skills/vm0-ai/vm0-skills/finicity/Gen Agent Trust Hub

finicity

Pass

Audited by Gen Agent Trust Hub on Aug 1, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes zero CLI commands (e.g., zero banking accounts, zero banking transactions) to interface with the financial gateway. These operations are restricted to read-only actions and the output is parsed using jq for structured data handling.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes external transaction data. While it lacks explicit boundary markers, it limits risks by requesting only the narrowest date ranges necessary and avoiding retention of raw banking responses. It does not have write access to the file system or environment that could be exploited by injected content.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 1, 2026, 10:13 PM
Security Audit — agent-trust-hub — finicity