fsc-corporate-info

Pass

Audited by Gen Agent Trust Hub on Aug 23, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructions suggest using npx to fetch and execute @nomadamas/k-skill. As this is the vendor's own package for skill management, it is documented as standard functionality.
  • [COMMAND_EXECUTION]: The skill uses Python scripts to perform HTTP requests via urllib to the vendor's proxy server (k-skill-proxy.nomadamas.org). It also provides example CLI commands for executing the helper script.
  • [SAFE]: The skill explicitly includes hard rules in SKILL.md prohibiting the storage or printing of plaintext credentials and requiring user approval for any sensitive actions.
  • [SAFE]: All external network requests are directed to the vendor's infrastructure or official government data endpoints, following standard design patterns for proxied API access.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 23, 2026, 08:22 AM
Security Audit — agent-trust-hub — fsc-corporate-info