openfort-embedded-wallet

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references official Openfort SDKs via standard package managers including NPM, Swift Package Manager, and Unity Package Manager. These resources are hosted on the vendor's official GitHub repositories and package registries.
  • [COMMAND_EXECUTION]: The documentation provides standard project scaffolding commands and installation steps for various development environments. These are common developer workflows and are appropriately scoped to the skill's purpose.
  • [CREDENTIALS_UNSAFE]: The skill correctly distinguishes between client-side publishable keys and server-side secret keys. It includes explicit warnings against embedding secret keys in client-side code and recommends the use of environment variables for secure configuration.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 06:25 AM
Security Audit — agent-trust-hub — openfort-embedded-wallet