endor-license
Pass
Audited by Gen Agent Trust Hub on Mar 21, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the npx utility to execute the endorctl CLI tool to retrieve license compliance data from the Endor Labs platform.
- [EXTERNAL_DOWNLOADS]: The npx command downloads the endorctl tool from the public npm registry, which is a well-known service. This tool is a vendor-owned resource used as intended for the skill's primary function.
Audit Metadata