sumsub-integrate-dint-standalone

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill includes bash scripts (scripts/preflight.sh, examples/behavior-token.sh, examples/submit-platform-event.sh) that use curl for API communication and openssl for HMAC signature generation. These actions are directed at the vendor's official sumsub.com infrastructure and follow standard authentication protocols.
  • [DYNAMIC_EXECUTION]: The scripts/preflight.sh utility uses python3 -c to parse and extract information from JSON responses returned by the Sumsub API. The script uses standard libraries and safe parsing methods.
  • [EXTERNAL_DOWNLOADS]: The skill facilitates the installation of the @sumsub/fisherman package from the official npm registry and references the esm.sh CDN for importing the vendor's JavaScript module in web environments.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 09:35 PM
Security Audit — agent-trust-hub — sumsub-integrate-dint-standalone