jwt-handler
Pass
Audited by Gen Agent Trust Hub on Mar 13, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides security-focused guidance for implementing JWT authentication. It correctly identifies and promotes best practices such as short-lived access tokens, asymmetric signing algorithms (RS256/ES256), and refresh token rotation with family tracking to detect reuse.
- [SAFE]: No malicious code patterns, obfuscation, or data exfiltration attempts were detected. The technical examples use standard libraries and follow secure coding patterns for secret management.
Audit Metadata