smello-setup

Pass

Audited by Gen Agent Trust Hub on Jun 15, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill facilitates the installation of the smello and smello-server packages from official package registries and references Docker images from the vendor's repository. These resources are consistent with the skill's stated purpose of integrating a monitoring tool.
  • [COMMAND_EXECUTION]: Utilizes shell commands for project reconnaissance and dependency management. The skill is designed to discover application structures and entry points, presenting all proposed actions to the user for approval before execution.
  • [DATA_EXFILTRATION]: The integration captures application telemetry such as HTTP requests and exceptions for local debugging. It includes default security measures, such as redacting sensitive headers like 'Authorization' and 'X-Api-Key', and directs data to a local dashboard by default.
  • [PROMPT_INJECTION]: The instructions do not contain any patterns indicative of prompt injection, role-play bypasses, or attempts to override system safety guidelines.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 15, 2026, 11:02 PM
Security Audit — agent-trust-hub — smello-setup