run-debugger
Pass
Audited by Gen Agent Trust Hub on Aug 8, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill operates in a read-only capacity, fetching metadata, transcripts, and agent revisions via the Duvo public API tools (e.g.,
getRun,listRunMessages,getRevision). - [SAFE]: All external domains, such as
duvo.aiandgithub.com/duvoai/skills, and packages like@duvoai/cli, are official vendor resources belonging to the skill author 'duvoai'. - [SAFE]: No obfuscation, hardcoded credentials, or persistence mechanisms were detected in the instructions.
- [SAFE]: The skill handles indirect data ingestion (transcripts and AOPs) for analysis only; it does not perform high-privilege actions like file writing or shell command execution. It explicitly delegates AOP rewrites to a separate
aop-writerskill rather than performing them itself.
Audit Metadata