recoup-platform-track-onboarding
Pass
Audited by Gen Agent Trust Hub on Jul 23, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is designed to perform read-only status checks against the vendor's official API (api.recoupable.dev) to monitor account onboarding milestones such as artist creation and social connectivity.
- [DATA_EXFILTRATION]: The skill accesses the local configuration file
~/.claude/recoup.envto retrieve theRECOUP_API_KEY. This is documented as a standard practice for secure credential management on the platform and does not involve unauthorized data movement. - [COMMAND_EXECUTION]: No dangerous system commands, subprocess spawning, or unauthorized script executions were detected. The skill logic is focused on information retrieval and providing navigational guidance to the user.
Audit Metadata