spot-companies-and-people-with-active-pain-points

Pass

Audited by Gen Agent Trust Hub on Apr 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements secure credential management by storing API keys in a local .env file and ensuring it is added to .gitignore to prevent accidental exposure.- [EXTERNAL_DOWNLOADS]: Network activity is restricted to authenticated API calls to the vendor's official domain (api.openfunnel.dev) via curl. No downloads from untrusted third-party sources were detected.- [COMMAND_EXECUTION]: The agent uses standard shell scripts (api.sh, signup.sh) to perform its functions. No evidence of arbitrary command execution or privilege escalation was found.- [SAFE]: The workflow requires explicit user approval before executing signal deployments that incur credit costs, providing transparency and preventing unauthorized usage.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 17, 2026, 06:12 PM