skills/phuongnamsoft/skills/cometbft/Gen Agent Trust Hub

cometbft

Pass

Audited by Gen Agent Trust Hub on May 4, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONCREDENTIALS_UNSAFE
Full Analysis
  • [SAFE]: The skill consists primarily of comprehensive technical documentation, including Architectural Decision Records (ADRs), Requests for Comments (RFCs), and operational guides for the CometBFT project.- [EXTERNAL_DOWNLOADS]: Includes instructions for downloading software from trusted organizations on GitHub (cometbft, cosmos, cockroachdb, dgraph-io) and official system registries, which is standard behavior for software installation and maintenance guides.- [COMMAND_EXECUTION]: Provides standard operational commands for node initialization, configuration management, and health monitoring through local RPC endpoints (e.g., localhost:26657). These commands are intended for administrative use by a node operator.- [CREDENTIALS_UNSAFE]: Contains example private keys and node IDs within documentation files (such as priv_validator_key.json.md and node_key.json.md). These are verified as instructional examples, explicitly labeled as such, and accompanied by clear warnings against use in production environments.- [SAFE]: No obfuscation, persistence mechanisms, or privilege escalation techniques were detected. The skill operates entirely within the scope of its stated purpose as a senior blockchain engineer assistant.
Audit Metadata
Risk Level
SAFE
Analyzed
May 4, 2026, 02:54 AM
Security Audit — agent-trust-hub — cometbft