stacktree-client-deliverable

Fail

Audited by Gen Agent Trust Hub on Aug 24, 2026

Risk Level: CRITICAL
Full Analysis
  • [SAFE]: The skill facilitates communication with the 'stacktr.ee' platform, which appears to be the primary service provider for this skill (consistent with the skill name and purpose). All external links (stacktr.ee/x402, app.stacktr.ee/api-keys) are within the domain of the service being integrated.
  • [SAFE]: The skill explicitly instructs the agent to use a PII (Personally Identifiable Information) scanner in block mode to prevent accidental data leaks during the publishing process.
  • [SAFE]: The skill implements strong access control recommendations, advising the agent to use email-based one-time codes or strong generated passwords rather than leaving links public.
  • [SAFE]: The environment variable requirement (STACKTREE_API_KEY) follows standard security practices by pointing the user to the official dashboard for key generation rather than requesting the key be hardcoded or handled unsafely.
Recommendations
  • CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
  • Contains 2 malicious URL(s) - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Aug 24, 2026, 09:57 AM