stripe-integration
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOWNO_CODE
Full Analysis
- Instructional Content (SAFE): The file consists entirely of Markdown documentation providing guidance on Stripe integration best practices, such as idempotency, webhook verification, and state management.- No Executable Code (SAFE): There are no scripts (.py, .js, .sh), binaries, or automation instructions that could perform operations on a host system.- Data Privacy (SAFE): No hardcoded API keys, tokens, or sensitive credentials were found. The skill correctly identifies the risk of mishandling keys as a 'Sharp Edge' for developers to avoid.- Prompt Injection (SAFE): While the skill defines a persona ('You are a payments engineer'), this is standard for agent behavioral guidance and does not attempt to bypass safety filters or ignore system instructions.
Audit Metadata