windsurf-sdk-patterns

Pass

Audited by Gen Agent Trust Hub on Apr 4, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
  • [SAFE]: The skill contains no executable code or instructions that attempt to bypass safety guidelines or perform unauthorized actions.
  • [EXTERNAL_DOWNLOADS]: Includes configuration examples for MCP servers that reference packages under the @modelcontextprotocol scope (e.g., @modelcontextprotocol/server-github). These are well-known resources within the Model Context Protocol ecosystem and are used as illustrative configuration examples.
  • [CREDENTIALS_UNSAFE]: The skill demonstrates secure credential handling by using environment variable placeholders (e.g., ${GITHUB_TOKEN}, ${DATABASE_URL}) in configuration templates instead of hardcoded secrets.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 4, 2026, 07:58 PM