zeroeval-install

Pass

Audited by Gen Agent Trust Hub on Mar 27, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSDATA_EXFILTRATION
Full Analysis
  • [COMMAND_EXECUTION]: The skill facilitates environment discovery by checking for local configuration files like pyproject.toml or package.json to determine the appropriate SDK path. It also describes CLI commands for SDK setup and API key configuration, including persisting credentials via shell profile updates (~/.bashrc, ~/.zshrc).
  • [EXTERNAL_DOWNLOADS]: Guides the installation of the zeroeval SDK and its integration packages from public registries (NPM and PyPI). These resources are provided by the official vendor and are used as intended for application monitoring.
  • [DATA_EXFILTRATION]: Documents the use of network communication with api.zeroeval.com for core platform services, including trace ingestion, prompt version registration, and feedback collection. These operations are transparently documented as part of the SDK's telemetry and management functions.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 27, 2026, 09:33 PM
Security Audit — agent-trust-hub — zeroeval-install