Composio Connect

Pass

Audited by Gen Agent Trust Hub on Jul 29, 2026

Risk Level: SAFEREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONCREDENTIALS_UNSAFE
Full Analysis
  • [REMOTE_CODE_EXECUTION]: The skill provides instructions to install the Composio CLI by executing a shell script directly from the vendor's domain (https://composio.dev/install).
  • [COMMAND_EXECUTION]: The skill relies on shell commands to interact with the Composio CLI for searching tools, linking accounts, and executing actions across external applications. It also suggests using inline bash or python scripts for data analysis tasks.
  • [CREDENTIALS_UNSAFE]: The composio whoami command is used to verify authentication status, which displays sensitive information including user_api_key and user_id. The skill explicitly instructs the agent not to hardcode these values.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 29, 2026, 02:30 PM
Security Audit — agent-trust-hub — Composio Connect