stacktree-client-deliverable
Fail
Audited by Gen Agent Trust Hub on Aug 24, 2026
Risk Level: CRITICAL
Full Analysis
- [SAFE]: The skill facilitates communication with the 'stacktr.ee' platform, which appears to be the primary service provider for this skill (consistent with the skill name and purpose). All external links (
stacktr.ee/x402,app.stacktr.ee/api-keys) are within the domain of the service being integrated. - [SAFE]: The skill explicitly instructs the agent to use a PII (Personally Identifiable Information) scanner in
blockmode to prevent accidental data leaks during the publishing process. - [SAFE]: The skill implements strong access control recommendations, advising the agent to use email-based one-time codes or strong generated passwords rather than leaving links public.
- [SAFE]: The environment variable requirement (
STACKTREE_API_KEY) follows standard security practices by pointing the user to the official dashboard for key generation rather than requesting the key be hardcoded or handled unsafely.
Recommendations
- CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
- Contains 2 malicious URL(s) - DO NOT USE
Audit Metadata