frappe-core-api

Pass

Audited by Gen Agent Trust Hub on Mar 31, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a technical guide for Frappe API integrations and does not contain malicious code or patterns.
  • [COMMAND_EXECUTION]: Examples provided in the skill use standard libraries like requests for Python and fetch for Node.js to perform API operations, which is consistent with the skill's purpose.
  • [CREDENTIALS_UNSAFE]: The skill uses placeholders for API keys and secrets in its documentation and explicitly instructs users to store actual credentials in environment variables or site configuration files rather than hardcoding them.
  • [PROMPT_INJECTION]: The skill content is restricted to technical documentation and API patterns, with no evidence of attempts to override agent behavior or bypass safety guidelines.
  • [DATA_EXFILTRATION]: No patterns of sensitive data access or exfiltration to unauthorized domains were found; network operations are limited to example endpoints provided for integration testing.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 31, 2026, 10:40 AM