klaviyo-ci-integration

Pass

Audited by Gen Agent Trust Hub on Sep 9, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses gh secret set to manage repository secrets and standard npm commands to execute test suites and verify package versions.
  • [EXTERNAL_DOWNLOADS]: The suggested GitHub Actions workflow references official actions (actions/checkout, actions/setup-node) and installs the official klaviyo-api SDK from the npm registry.
  • [DATA_EXFILTRATION]: The workflow includes a smoke test using curl to verify connectivity to the Klaviyo API endpoint (a.klaviyo.com). This operation is directed to the official service domain and is used for authentication verification.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 9, 2026, 03:46 AM
Security Audit — agent-trust-hub — klaviyo-ci-integration