skills/v1truv1us/ai-eng-system/slack/Gen Agent Trust Hub

slack

Pass

Audited by Gen Agent Trust Hub on Aug 17, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill includes a shell command snippet to fetch the Slack API changelog and search for breaking changes using curl and grep. This is a routine task for developers to monitor API changes.- [EXTERNAL_DOWNLOADS]: The skill fetches data from api.slack.com, which is an official Slack domain. This is consistent with the skill's purpose of engineering Slack integrations and uses a well-known service.- [CREDENTIALS_UNSAFE]: The skill references the use of SLACK_SIGNING_SECRET via environment variables (process.env.SLACK_SIGNING_SECRET) and provides specific advice against hardcoding tokens, following security best practices for secret management.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 17, 2026, 11:52 AM
Security Audit — agent-trust-hub — slack