custom-domains

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes standard system utilities such as curl, dig, and jq to interact with the official Internet Computer domain management API. These operations are restricted to infrastructure managed by the vendor (dfinity) and are necessary for domain lifecycle management.
  • [EXTERNAL_DOWNLOADS]: The instructions involve sending requests to endpoints under icp.net. As icp.net is the official infrastructure for the Internet Computer and the skill is authored by the platform vendor, these network operations represent standard platform functionality.
  • [SAFE]: The skill uses standard @icp-sdk/core libraries for canister interaction. No obfuscation, persistence mechanisms, or privilege escalation patterns were detected. The security practices described, such as verifying DNS records and canister ownership via ACME challenges, align with industry standards for secure domain management.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 02:49 PM
Security Audit — agent-trust-hub — custom-domains