upstash-workflow-js

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The documentation notes that the local development environment (triggered by the QSTASH_DEV environment variable) automatically manages the QStash CLI binary. This is an expected feature of the vendor's official development tooling.
  • [INDIRECT_PROMPT_INJECTION]: The skill defines patterns for AI agents that ingest and process data from external sources like webhooks and HTTP responses. It mitigates potential injection risks by providing and documenting built-in support for Zod-based schema validation to ensure data integrity.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 02:27 PM
Security Audit — agent-trust-hub — upstash-workflow-js