typescript-sdk
Pass
Audited by Gen Agent Trust Hub on Apr 7, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides documentation and code examples for the
@contextvm/sdklibrary, which is the vendor's own package. - [SAFE]: Instructions for using
PrivateKeySignerexplicitly advise against hardcoding private keys and recommend using environment variables, aligning with security best practices. - [SAFE]: No evidence of prompt injection, data exfiltration, obfuscation, or unauthorized command execution was found across the skill files.
- [SAFE]: External references and relay URLs (e.g.,
wss://relay.contextvm.org) are consistent with the vendor's infrastructure and the intended use of the SDK.
Audit Metadata