zeroeval-install
Pass
Audited by Gen Agent Trust Hub on Mar 27, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSDATA_EXFILTRATION
Full Analysis
- [COMMAND_EXECUTION]: The skill facilitates environment discovery by checking for local configuration files like
pyproject.tomlorpackage.jsonto determine the appropriate SDK path. It also describes CLI commands for SDK setup and API key configuration, including persisting credentials via shell profile updates (~/.bashrc,~/.zshrc). - [EXTERNAL_DOWNLOADS]: Guides the installation of the
zeroevalSDK and its integration packages from public registries (NPM and PyPI). These resources are provided by the official vendor and are used as intended for application monitoring. - [DATA_EXFILTRATION]: Documents the use of network communication with
api.zeroeval.comfor core platform services, including trace ingestion, prompt version registration, and feedback collection. These operations are transparently documented as part of the SDK's telemetry and management functions.
Audit Metadata