stripe-integration

Pass

Audited by Gen Agent Trust Hub on Feb 16, 2026

Risk Level: LOWNO_CODE
Full Analysis
  • Instructional Content (SAFE): The file consists entirely of Markdown documentation providing guidance on Stripe integration best practices, such as idempotency, webhook verification, and state management.- No Executable Code (SAFE): There are no scripts (.py, .js, .sh), binaries, or automation instructions that could perform operations on a host system.- Data Privacy (SAFE): No hardcoded API keys, tokens, or sensitive credentials were found. The skill correctly identifies the risk of mishandling keys as a 'Sharp Edge' for developers to avoid.- Prompt Injection (SAFE): While the skill defines a persona ('You are a payments engineer'), this is standard for agent behavioral guidance and does not attempt to bypass safety filters or ignore system instructions.
Audit Metadata
Risk Level
LOW
Analyzed
Feb 16, 2026, 09:38 AM