soia-env-deepcode-cli-install
Pass
Audited by Gen Agent Trust Hub on Aug 6, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill performs system checks and installations using standard tools like npm and Node.js. All command execution is controlled and validated, ensuring the agent does not perform arbitrary or privileged operations without user consent.
- [SAFE]: Network activity is restricted to retrieving version metadata from reputable sources such as the npm registry and GitHub. No data exfiltration or unauthorized remote code execution patterns were found.
- [SAFE]: The skill includes explicit instructions and logic to protect user credentials. It ensures that API keys remain local to the user's machine and are never processed or seen by the agent, adhering to a zero-trust model for secrets.
Audit Metadata