slack-bot
Pass
Audited by Gen Agent Trust Hub on Apr 1, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns or security threats were identified in the skill instructions or metadata. The skill functions as an educational and structural guide for Slack App development.
- [SAFE]: The skill promotes proactive security measures, including the validation of
x-slack-signatureto prevent request forgery and the use of environment variables or secrets managers for sensitive tokens. - [SAFE]: External references are limited to official Slack developer documentation and well-known, trusted SDKs (Bolt). These are treated as safe sources according to standard security practices.
- [SAFE]: The skill adopts a 'least privilege' approach by explicitly instructing users to only request the minimum necessary OAuth scopes for their specific bot functionality.
Audit Metadata