otter-strategy

Pass

Audited by Gen Agent Trust Hub on May 15, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill's documentation in SKILL.md provides instructions to download its own source code and configuration files from the official Senpi-ai GitHub repository. These downloads are a standard part of the skill's installation process from a trusted vendor source.
  • [COMMAND_EXECUTION]: The Python scripts otter-producer.py and otter_config.py utilize subprocess.run to interact with platform-native binaries mcporter (for tool calling) and openclaw (for signal ingestion). These operations are essential for the skill's intended functionality and do not involve untrusted input.
  • [SAFE]: The skill implements robust security patterns such as file-based reentrancy locking and wallet-isolated state directories. No evidence of prompt injection, data exfiltration, or unauthorized persistence was detected during the analysis.
Audit Metadata
Risk Level
SAFE
Analyzed
May 15, 2026, 10:51 AM