skills/okou-ai/okou-skills/pikvm/Gen Agent Trust Hub

pikvm

Pass

Audited by Gen Agent Trust Hub on Sep 23, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: Utilizes curl to communicate with the PiKVM API for remote hardware management, including mouse movement, keyboard input, and power controls.
  • [DATA_EXFILTRATION]: Employs environment variables ($PIKVM_AUTH and $PIKVM_URL) to manage authentication and target endpoints, which is a recommended secure practice for handling credentials.
  • [DATA_EXFILTRATION]: Accesses the local file system to store temporary screenshot data at /tmp/screenshot.jpg for processing.
  • [COMMAND_EXECUTION]: Uses the -k flag with curl to bypass SSL certificate validation; this is standard for local network devices with self-signed certificates, though it avoids typical encryption verification.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 23, 2026, 05:06 PM
Security Audit — agent-trust-hub — pikvm