findata

Pass

Audited by Gen Agent Trust Hub on Jul 17, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches structured financial data from sec.gov (SEC EDGAR) and yahoo.com (Yahoo Finance). These are well-known, public financial information services and are accessed through standard browser navigation techniques.\n- [COMMAND_EXECUTION]: The skill dynamically generates JavaScript code to control a browser instance via browser-harness-js. It also executes node commands to perform date-to-Unix timestamp conversions. These operations are scoped to the skill's primary functionality of data retrieval.\n- [SAFE]: The scripts/setup file modifies user shell profiles (.bashrc, .zshrc, .profile) to add the tool's installation directory to the system PATH. While technically a persistence mechanism, this is standard behavior for CLI tool installation and serves a legitimate purpose for the skill's operation.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 17, 2026, 04:46 PM
Security Audit — agent-trust-hub — findata