openfort-cli

Fail

Audited by Gen Agent Trust Hub on Jun 30, 2026

Risk Level: CRITICAL
Full Analysis
  • [SAFE]: The skill is primarily instructional, offering guidance on how to use the Openfort CLI. It contains no executable scripts or malicious logic.
  • [COMMAND_EXECUTION]: The skill directs the agent to execute legitimate openfort CLI commands (e.g., openfort accounts, openfort transactions) for managing blockchain resources. This behavior is the intended and primary purpose of the skill.
  • [CREDENTIALS_UNSAFE]: The skill requires an OPENFORT_SECRET_KEY input for authentication and notes the location of local configuration files at ~/.config/openfort/credentials. These are standard practices for managing API keys and session data for the Openfort service.
  • [EXTERNAL_DOWNLOADS]: The documentation references official domains (openfort.io and openfort.xyz) for further guidance. These links are appropriate for the service being provided and connect users to the vendor's own technical resources.
Recommendations
  • CRITICAL: 1 infected file(s) detected - DO NOT USE
  • Contains 16 malicious URL(s) - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Jun 30, 2026, 10:59 AM
Security Audit — agent-trust-hub — openfort-cli