lov-check-balance

Pass

Audited by Gen Agent Trust Hub on Sep 10, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSCREDENTIALS_UNSAFEDYNAMIC_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The script scripts/check_balance.py uses subprocess.run to call the macOS security tool. This functionality is used to retrieve API keys and tokens from the system Keychain for balance checking.
  • [EXTERNAL_DOWNLOADS]: The skill performs network requests to well-known service providers, including Anthropic, DeepSeek, OpenAI/Codex, and OpenRouter, to fetch usage and billing information.
  • [CREDENTIALS_UNSAFE]: The tool accesses local credential storage files such as ~/.codex/auth.json and ~/.claude/.credentials.json. These files are read to provide session tokens for the balance queries.
  • [DYNAMIC_EXECUTION]: The scripts/profile_store.py utility manages a local JSON profile, performing atomic file writes to save user preferences. It includes an explicit blocklist that prevents keys, tokens, and other secrets from being saved to the durable profile context.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 10, 2026, 02:54 AM
Security Audit — agent-trust-hub — lov-check-balance