clado
Pass
Audited by Gen Agent Trust Hub on Jun 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill uses environment variables (
$CLADO_TOKEN) for API authentication instead of hardcoding sensitive credentials. - [COMMAND_EXECUTION]: The skill documentation includes standard
curlcommand examples to perform searches and profile enrichment via the Clado API. These are intended functional behaviors for the skill's stated purpose. - [EXTERNAL_DOWNLOADS]: The skill references and interacts with official service domains (
search.clado.aianddocs.clado.ai) required for the tool to function. - [PROMPT_INJECTION]: While the skill processes natural language queries via an external API, it does not exhibit any patterns of direct instruction overrides or safety bypasses. Standard indirect prompt injection risks associated with processing search results apply but are considered low risk in this context.
Audit Metadata