sdk-install

Pass

Audited by Gen Agent Trust Hub on Jul 23, 2026

Risk Level: SAFE
Full Analysis
  • [DATA_EXFILTRATION]: The skill provides instructions for managing SDK keys and client IDs but includes explicit warnings against hardcoding these secrets, recommending environment variables and secure secret management instead.
  • [EXTERNAL_DOWNLOADS]: The skill references official LaunchDarkly documentation and internal SDK recipes for package installation. These resources are from the verified vendor and do not pose a security risk.
  • [PROMPT_INJECTION]: The skill analyzes project metadata and file structure (ingestion points) to determine the appropriate SDK configuration. This behavior is essential to its function, and the skill includes safeguards such as requiring explicit user approval before modifying project dependencies (sanitization/capability inventory).
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 23, 2026, 12:56 AM
Security Audit — agent-trust-hub — sdk-install