beast-mode-creation

Pass

Audited by Gen Agent Trust Hub on Apr 7, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses curl commands to interact with the Domo API. These commands are clearly documented and are used exclusively for the skill's stated purpose of managing calculated fields.
  • [DATA_EXFILTRATION]: Developer tokens are used for authentication in network requests to Domo API endpoints. This is a standard practice for Domo integrations, and no unauthorized or suspicious exfiltration patterns were identified.
  • [PROMPT_INJECTION]: The skill ingests data from external API responses to update Domo cards. This creates an indirect prompt injection surface common to all integration tools, but it is implemented using structured JSON and includes validation steps to mitigate risks.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 7, 2026, 05:19 AM