skills/vm0-ai/vm0-skills/vercel/Gen Agent Trust Hub

vercel

Pass

Audited by Gen Agent Trust Hub on Apr 17, 2026

Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
  • [COMMAND_EXECUTION]: The skill defines several curl commands to interact with the Vercel API for managing projects, domains, and environment variables. These commands target the official api.vercel.com domain.
  • [DATA_EXFILTRATION]: The skill uses a $VERCEL_TOKEN environment variable for authorization. This token is sent to well-known Vercel API endpoints as part of its standard operation.
  • [CREDENTIALS_UNSAFE]: The skill includes an example for listing user authentication tokens (/v6/user/tokens). While a standard API endpoint, it involves the retrieval of sensitive credential metadata.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 17, 2026, 04:44 PM