flow-audit

Pass

Audited by Gen Agent Trust Hub on Sep 29, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill conducts a comprehensive audit of flow configurations without introducing security risks.
  • [EXTERNAL_DOWNLOADS]: The skill utilizes npx --yes adapty@latest to ensure the latest version of the Adapty CLI is used for its operations. This is a standard and safe deployment pattern for official vendor tools under the 'adaptyteam' context.
  • [COMMAND_EXECUTION]: Shell commands are used in SKILL.md to interact with the Adapty API for fetching and validating flow data. These operations are restricted to retrieval and validation, consistent with the skill's stated read-only purpose.
  • [DYNAMIC_EXECUTION]: Local Python scripts (audit-flow.py and verify-config.py) perform static analysis on the flow configurations. The scripts use safe standard library functions to parse and inspect JSON data structures without executing untrusted code.
  • [DATA_EXFILTRATION]: The skill implements a read-only architecture, ensuring that flow data is audited locally and only communicated through the authenticated official CLI tool to the vendor's own API.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 29, 2026, 05:17 PM
Security Audit — agent-trust-hub — flow-audit