magic-hour-media
Pass
Audited by Gen Agent Trust Hub on Sep 12, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill follows security best practices by instructing the agent to use environment variables (
MAGIC_HOUR_API_KEY) or existing credential flows for authentication, rather than hardcoding keys or requesting them from the user. - [EXTERNAL_DOWNLOADS]: The skill references official vendor resources, including the Python and Node.js SDKs on GitHub (within the
magichourhqorganization) and documentation hosted on themagichour.aidomain. These are legitimate resources owned by the skill's author. - [COMMAND_EXECUTION]: Documentation in
references/setup.mdincludes setup examples for the Codex CLI. These commands are standard configuration steps for integrating the service and do not exhibit malicious patterns.
Audit Metadata