recur-webhooks
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE] (SAFE): The skill focuses on providing documentation and helper scripts for webhook integration.
- [COMMAND_EXECUTION] (SAFE): The provided shell script
scripts/test-webhook.shuses standard tools likecurlandopensslfor the intended purpose of testing local API endpoints. It does not perform any unauthorized commands. - [DATA_EXFILTRATION] (SAFE): There are no signs of data exfiltration. The implementation examples correctly guide users to use environment variables (
process.env.RECUR_WEBHOOK_SECRET) rather than hardcoding credentials. - [PROMPT_INJECTION] (SAFE): No instructions designed to bypass agent safety or override system prompts were found in the markdown or metadata.
Audit Metadata