endor-license

Pass

Audited by Gen Agent Trust Hub on Mar 21, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses the npx utility to execute the endorctl CLI tool to retrieve license compliance data from the Endor Labs platform.
  • [EXTERNAL_DOWNLOADS]: The npx command downloads the endorctl tool from the public npm registry, which is a well-known service. This tool is a vendor-owned resource used as intended for the skill's primary function.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 21, 2026, 04:26 AM