pp-tesla
Pass
Audited by Gen Agent Trust Hub on May 25, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill involves installing the tesla-pp-cli binary from the npm registry via npx and a proxy tool from the official Tesla (teslamotors) GitHub repository. These sources are considered well-known or vendor-owned based on the author context.
- [COMMAND_EXECUTION]: The instructions guide the agent to perform installation and verification commands using the shell, as well as executing vehicle commands such as remote start and door unlocking.
- [DATA_EXFILTRATION]: The tool includes a documented feature allowing command results to be delivered to a user-provided webhook URL. While this represents a data sink, it is a transparently disclosed feature for integration.
Audit Metadata