skills/clawlink-hq/skills/capsule-crm/Gen Agent Trust Hub

capsule-crm

Pass

Audited by Gen Agent Trust Hub on Jun 28, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill uses npx to run @useclawlink/cli from the NPM registry, which is the standard method for accessing the vendor's integration tools.
  • [COMMAND_EXECUTION]: Executable commands are limited to the @useclawlink/cli tool for managing CRM data and authentication, matching the skill's stated purpose.
  • [CREDENTIALS_UNSAFE]: The documentation mentions storing tokens in ~/.clawlink/credentials.json. This is a localized configuration for the vendor's tool and does not represent a security risk or exposure of system credentials.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 28, 2026, 02:42 PM
Security Audit — agent-trust-hub — capsule-crm