helio-cli
Pass
Audited by Gen Agent Trust Hub on Aug 3, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill references and provides instructions for the @zurb/helio-cli Node.js package, which is a verified vendor resource belonging to the skill author zurb.
- [SAFE]: Instructions for authentication recommend using environment variables (HELIO_API_ID, HELIO_API_TOKEN) to manage secrets securely, rather than hardcoding them or passing them as cleartext arguments.
- [SAFE]: The skill incorporates safety mechanisms like the --dry-run flag and tests validate command to ensure configurations are correct and costs are estimated before any final action is taken.
- [SAFE]: No malicious patterns, such as prompt injection, unauthorized data access, or obfuscation, were identified in the instructions or reference materials.
Audit Metadata