flag-ramp
Pass
Audited by Gen Agent Trust Hub on Jul 7, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill uses a local helper script
gb-callfor all GrowthBook API interactions. It also utilizes standard system commands likeopenorxdg-opento display the GrowthBook user interface to the user. - [CREDENTIALS_UNSAFE]: The instructions follow security best practices by recommending that API keys be stored in environment variables or a local configuration file (
~/.config/growthbook/.env). - [DATA_EXFILTRATION]: No evidence of unauthorized data transmission was found. Network operations are limited to official GrowthBook API communication through the provided local helper script.
Audit Metadata