infer-analytics
Pass
Audited by Gen Agent Trust Hub on Apr 5, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill implements a version-checking mechanism that uses shell commands (
npm viewandnode -e) to verify the status of the vendor's official packages (@inferevents/sdkand@inferevents/mcp). These commands are used to notify the user of available updates without blocking the core workflow. - [COMMAND_EXECUTION]: A dynamic command pattern is used to correlate analytics insights with development history. The agent is instructed to execute
git logusing a search parameter (correlation_hint) retrieved from the analytics tool's output. This allows the agent to identify code commits that might have caused changes in product metrics.
Audit Metadata