api-designer
Pass
Audited by Gen Agent Trust Hub on Apr 12, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [NO_CODE]: The skill consists exclusively of markdown instructions and static JSON configuration files. There are no scripts (Python, JavaScript, shell) or binaries included in the package.
- [SAFE]: The YAML frontmatter explicitly sets
allowed-toolsto an empty string, which prevents the agent from invoking external tools or capabilities that could lead to unintended side effects or security risks. - [SAFE]: No sensitive information, such as API keys, credentials, or private file paths, is present in the skill instructions or assets. Mentions of authentication patterns like OAuth 2.0 and JWT are purely conceptual and intended for design guidance.
- [SAFE]: No network-related commands (e.g., curl, wget) or remote code execution patterns were detected in the instructions or the static JSON data files.
Audit Metadata