configure

Pass

Audited by Gen Agent Trust Hub on Sep 9, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements secure credential management for Slack tokens. It follows best practices by using restrictive directory (0700) and file (0600) permissions, employing an atomic replacement strategy for the configuration file, and explicitly instructing the agent to never echo secrets to output or logs.
  • [COMMAND_EXECUTION]: The skill uses scoped shell commands (mkdir, chmod, install, mv, rm) to manage its configuration directory and files. These operations are limited to the skill's specific state directory at ~/.claude/channels/slack/ and are used to ensure the security of the stored tokens.
  • [EXTERNAL_DOWNLOADS]: The skill includes links to documentation and related skills hosted on the author's GitHub repository. These are vendor-owned resources provided for instructional context and do not involve remote code execution.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 9, 2026, 11:05 AM
Security Audit — agent-trust-hub — configure