weaverse-content-api
Pass
Audited by Gen Agent Trust Hub on Aug 21, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides instructions and a helper script (
scripts/weaverse_content_api.mjs) for interacting with the Weaverse Content API atstudio.weaverse.io. All network operations are directed to the vendor's own infrastructure. - [SAFE]: The skill follows security best practices for credential management, explicitly instructing users to store the API key in an environment variable (
WEAVERSE_API_KEY) and warning against hardcoding secrets or passing them in query parameters. - [SAFE]: The helper script is a transparent Node.js script with zero external dependencies, performing basic HTTP requests using the native
fetchAPI. It does not perform any suspicious command execution or obfuscation. - [SAFE]: The skill facilitates data operations (read, update, delete) within the scope of the Weaverse platform, consistent with its stated purpose of programmatic content management.
Audit Metadata