api-documentation-writer

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • [Data Exposure & Exfiltration] (SAFE): The skill contains placeholders like 'YOUR_API_KEY' in documentation examples. These are standard placeholders for instructional purposes and do not represent leaked credentials or hardcoded secrets.
  • [Indirect Prompt Injection] (LOW): The skill is designed to ingest and summarize external API data. While this presents an injection surface, the skill has no dangerous capabilities (such as file writing, command execution, or network access), so any malicious data would only impact the quality of the generated text.
  • [Remote Code Execution] (SAFE): Code snippets for curl, Python, and JavaScript are provided purely as static examples for the user's documentation and are not executed by the agent itself.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 05:49 PM