canvas
Pass
Audited by Gen Agent Trust Hub on May 16, 2026
Risk Level: SAFECOMMAND_EXECUTIONREMOTE_CODE_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill includes shell command examples using utilities like
cat,jq,sed, andlsoffor local content creation, parsing of the~/.otto/otto.jsonconfiguration file, and diagnosing network port availability. - [REMOTE_CODE_EXECUTION]: The
evalaction allows for the dynamic execution of JavaScript inside the WebView of connected nodes, which is a primary feature for enabling interactivity in rendered visualizations and games. - [SAFE]: Analysis of the skill instructions and described architecture revealed no malicious patterns, such as unauthorized data exfiltration, credential harvesting, or obfuscated content. The skill operates as a utility for the elizaOS ecosystem.
Audit Metadata