fcode-ama

Pass

Audited by Gen Agent Trust Hub on Aug 30, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is entirely composed of documentation and instructional content for platform support. No executable code or malicious scripts are included.
  • [COMMAND_EXECUTION]: The documentation provides standard CLI instructions for users to follow (e.g., pnpm install -g @factorialco/fcode-cli, fcode clone). These are legitimate development workflows for the Factorial Code platform and the tools are owned by the authoring vendor.
  • [CREDENTIALS_UNSAFE]: The skill discusses the use of FACTORIAL_TOKEN and correctly advises users to store it in local environment variables (variables.local.env) while explicitly warning against logging or committing the token, which follows security best practices.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 30, 2026, 05:06 PM
Security Audit — agent-trust-hub — fcode-ama