photo-gallery-delivery

Pass

Audited by Gen Agent Trust Hub on Jul 2, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses bash and bun to execute external scripts. It dynamically locates these scripts using the find command within specific local directories (~/.claude, ~/eon) where other agent skills are typically stored.
  • [EXTERNAL_DOWNLOADS]: The skill facilitates interactions with several well-known and trusted services, including Amazon Photos (amazon.ca), Cloudflare Workers (workers.dev), and GitHub (github.com). These interactions are performed via standard CLI tools like gh and bun to manage user data across these platforms.
  • [SAFE]: No malicious patterns, such as credential harvesting, unauthorized exfiltration of sensitive local files (e.g., SSH keys or environment secrets), or code obfuscation, were identified. The skill includes security-conscious instructions, such as using password-protected ZIP files and keeping originals out of version control to protect EXIF metadata.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 2, 2026, 01:46 AM
Security Audit — agent-trust-hub — photo-gallery-delivery