event-page
Pass
Audited by Gen Agent Trust Hub on Jul 6, 2026
Risk Level: SAFE
Full Analysis
- [DATA_EXPOSURE]: The skill is designed to access the user's local credentials at
~/.build-host/credentials.jsonto authenticate API requests. This is a standard operational requirement for interacting with the build.host infrastructure. The instructions include robust safety rules that explicitly forbid the agent from printing or leaking API keys, tokens, or other sensitive environment variables in chat logs or source code. - [COMMAND_EXECUTION]: The skill performs network operations via the build.host API (e.g., creating projects, deploying content, and fetching logs). These actions are consistent with the skill's primary purpose of infrastructure management and site deployment. The workflow includes validation steps, such as local checks and post-deployment HTTP verification, to ensure operational integrity.
Audit Metadata