weaverse-content-api

Pass

Audited by Gen Agent Trust Hub on Aug 21, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides instructions and a helper script (scripts/weaverse_content_api.mjs) for interacting with the Weaverse Content API at studio.weaverse.io. All network operations are directed to the vendor's own infrastructure.
  • [SAFE]: The skill follows security best practices for credential management, explicitly instructing users to store the API key in an environment variable (WEAVERSE_API_KEY) and warning against hardcoding secrets or passing them in query parameters.
  • [SAFE]: The helper script is a transparent Node.js script with zero external dependencies, performing basic HTTP requests using the native fetch API. It does not perform any suspicious command execution or obfuscation.
  • [SAFE]: The skill facilitates data operations (read, update, delete) within the scope of the Weaverse platform, consistent with its stated purpose of programmatic content management.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 21, 2026, 06:44 AM
Security Audit — agent-trust-hub — weaverse-content-api