sumsub-supported-id-documents

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses local Python and Bash scripts to process large JSON datasets and interact with the Sumsub API. These scripts perform data aggregation, filtering, and validation (e.g., recognition_status.py, query_supported_docs.py, build_country_mappings.py). The commands are used for legitimate data processing tasks associated with the skill's purpose.
  • [DATA_EXFILTRATION]: The skill uses curl in multiple Bash scripts (get_global_settings.sh, get_supported_docs.sh, put_country_mappings.sh, etc.) to communicate with api.sumsub.com. These operations are used to fetch and update the client's own document configuration settings. All network activity is targeted at the vendor's official API endpoints and is necessary for the skill to function as an administration tool for the Sumsub platform.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 09:35 PM
Security Audit — agent-trust-hub — sumsub-supported-id-documents