skills/ruvnet/ruflo/vector-setup/Gen Agent Trust Hub

vector-setup

Pass

Audited by Gen Agent Trust Hub on May 4, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs the ruvector package and several related add-ons (ruvector-onnx-embeddings-wasm, @ruvector/pi-brain, @ruvector/ruvllm, etc.) from the NPM registry. These are recognized as legitimate resources belonging to the vendor's ecosystem.
  • [COMMAND_EXECUTION]: Executes shell commands to install dependencies, run diagnostic tools (doctor, info), and generate identity tokens. It also registers a persistent MCP server using the claude mcp add command to enable tool functionality.
  • [COMMAND_EXECUTION]: Invokes a local shell script located at plugins/ruflo-ruvector/scripts/smoke.sh to perform a verification check of the environment and installation.
Audit Metadata
Risk Level
SAFE
Analyzed
May 4, 2026, 09:11 PM
Security Audit — agent-trust-hub — vector-setup