zoom-team-chat
Pass
Audited by Gen Agent Trust Hub on Mar 13, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides defensive code examples and educational content that follows security industry standards for API development. All external links point to official Zoom developer documentation and trusted vendor-managed GitHub repositories.- [CREDENTIALS_UNSAFE]: The documentation explicitly warns against hardcoding credentials and provides patterns for using environment variables. It includes comprehensive instructions on managing Client IDs, Client Secrets, and Bot JIDs securely.- [EXTERNAL_DOWNLOADS]: Dependencies mentioned (express, dotenv, node-fetch, node-cron) are standard, well-known libraries. References to tools like ngrok are standard for local development and webhook testing.- [DATA_EXFILTRATION]: No evidence of unauthorized data access or exfiltration. The skill provides utility scripts for local environment verification which is standard for development debugging.- [PROMPT_INJECTION]: The skill contains technical instructions and triggers that do not attempt to override agent behavior or bypass safety guidelines.
Audit Metadata