camsnap-hardened

Pass

Audited by Gen Agent Trust Hub on Apr 21, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions to install the camsnap binary using Homebrew from a third-party tap (steipete/tap/camsnap).
  • [COMMAND_EXECUTION]: The skill utilizes the camsnap CLI for camera discovery, snapshots, and recording. The watch command includes an --action parameter that allows for the execution of a local shell command when motion is detected.
  • [SAFE]: The skill incorporates explicit safety guardrails that instruct the agent to never pipe camera output to network commands, redact credentials from responses, and restrict credential storage to the local configuration file (~/.config/camsnap/config.yaml). These measures significantly mitigate the risk of data exfiltration and credential exposure.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 21, 2026, 06:30 PM
Security Audit — agent-trust-hub — camsnap-hardened