expanso-encrypt-data

Pass

Audited by Gen Agent Trust Hub on Jul 26, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill follows recommended security practices for secret management by using environment variables to store sensitive encryption keys (CARD_KEY, PII_KEY, ADDR_KEY) rather than hardcoding them.- [SAFE]: The pipeline implementation utilizes industry-standard AES-256-GCM encryption to protect sensitive data fields such as credit card numbers, social security numbers, and addresses.- [COMMAND_EXECUTION]: The skill includes a shell script (run.sh) that executes the expanso CLI. This is the primary intended function of the skill to run the data processing pipeline.- [EXTERNAL_DOWNLOADS]: The documentation contains references to official expanso.io domains for documentation and further examples. These are trusted resources belonging to the skill author.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 26, 2026, 05:45 AM
Security Audit — agent-trust-hub — expanso-encrypt-data