flow-wizard

Pass

Audited by Gen Agent Trust Hub on Jun 17, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill reads from and writes to the local filesystem. It scans for files such as eventcatalog.config.js and directories like services/ or agents/ to build a resource inventory for cross-referencing. It also writes generated documentation in MDX format to the project path. These actions are legitimate and necessary for the skill's primary function.
  • [EXTERNAL_DOWNLOADS]: The skill's documentation and reference files contain URLs to well-known services (e.g., stripe.com) as examples for defining external systems within business flows. These are static references and do not involve downloading or executing remote code.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 17, 2026, 01:36 PM
Security Audit — agent-trust-hub — flow-wizard