matrixscan-batch-capacitor

Pass

Audited by Gen Agent Trust Hub on Apr 28, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill's primary purpose is to guide the integration of the Scandit MatrixScan Batch SDK into Capacitor projects, which is a legitimate development task. All analyzed instructions and referenced scripts align with this objective.
  • [SAFE]: External links point to official Scandit documentation (docs.scandit.com) and the official Scandit GitHub organization (github.com/Scandit). These are well-known and appropriate resources for the skill's functionality.
  • [SAFE]: The skill correctly uses placeholders for sensitive information such as license keys ('-- ENTER YOUR SCANDIT LICENSE KEY HERE --'), following standard security practices for software development documentation and avoiding credential exposure.
  • [SAFE]: The Node.js packages referenced (scandit-capacitor-datacapture-core, scandit-capacitor-datacapture-barcode, @capacitor/app) are legitimate libraries associated with the vendor and the target framework.
  • [PROMPT_INJECTION]: The skill includes instructions to ensure the agent uses accurate and up-to-date API information from the provided references rather than relying on its internal training data. These are grounding instructions intended to improve technical accuracy and do not attempt to bypass safety filters or conceal malicious intent. The static detection hint regarding concealment was found to be a false positive related to helpfulness instructions.
  • [DATA_EXFILTRATION]: No unauthorized data collection or exfiltration mechanisms were detected. The skill provides correct guidance on handling camera permissions and license keys within the standard Capacitor framework patterns without performing suspicious network requests.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 28, 2026, 04:09 PM