indeed-research

Pass

Audited by Gen Agent Trust Hub on Aug 10, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill communicates with api.crawlora.net, which is the official API endpoint for the skill author's organization, crawlora-org. This is standard functionality for an API-integrated skill.
  • [COMMAND_EXECUTION]: The scripts/crawlora.sh helper script uses curl to perform network requests. The script includes safe handling of arguments using --data-urlencode to prevent command injection via URL parameters.
  • [CREDENTIALS_UNSAFE]: The skill correctly instructs users to manage their API keys via an environment variable (CRAWLORA_API_KEY) and explicitly warns against hardcoding or committing secrets in SKILL.md.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 10, 2026, 06:52 PM
Security Audit — agent-trust-hub — indeed-research