skills/vm0-ai/vm0-skills/clado/Gen Agent Trust Hub

clado

Pass

Audited by Gen Agent Trust Hub on Jun 14, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill uses environment variables ($CLADO_TOKEN) for API authentication instead of hardcoding sensitive credentials.
  • [COMMAND_EXECUTION]: The skill documentation includes standard curl command examples to perform searches and profile enrichment via the Clado API. These are intended functional behaviors for the skill's stated purpose.
  • [EXTERNAL_DOWNLOADS]: The skill references and interacts with official service domains (search.clado.ai and docs.clado.ai) required for the tool to function.
  • [PROMPT_INJECTION]: While the skill processes natural language queries via an external API, it does not exhibit any patterns of direct instruction overrides or safety bypasses. Standard indirect prompt injection risks associated with processing search results apply but are considered low risk in this context.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 14, 2026, 01:52 AM
Security Audit — agent-trust-hub — clado