skills/cipherstash/stack/stash-edge/Gen Agent Trust Hub

stash-edge

Pass

Audited by Gen Agent Trust Hub on Aug 9, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a comprehensive guide for developers to integrate encryption into edge environments using the @cipherstash/stack/wasm-inline package.
  • [CREDENTIALS_UNSAFE]: The document references sensitive environment variables such as CS_CLIENT_KEY and CS_CLIENT_ACCESS_KEY. However, it follows security best practices by explicitly instructing users to store these in platform-native secret managers (e.g., Supabase secrets, Wrangler secrets) and warns against committing them to version control.
  • [EXTERNAL_DOWNLOADS]: The skill mentions importing and installing the @cipherstash/stack library via standard package managers (NPM, Deno npm: specifiers). These references point to legitimate vendor-owned resources necessary for the described functionality.
  • [COMMAND_EXECUTION]: Examples of CLI usage (e.g., stash env, supabase secrets set) are provided as instructions for the user to configure their environment manually. These commands are relevant to the primary purpose of the skill and do not represent autonomous or hidden execution by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 9, 2026, 03:34 PM
Security Audit — agent-trust-hub — stash-edge