create-typescript-x402-paywall

Warn

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS] (MEDIUM): The skill instructs the user to install multiple unverified npm packages from the @x402-avm scope (@x402-avm/paywall, @x402-avm/avm, @x402-avm/core, @x402-avm/express, @x402-avm/hono, @x402-avm/next). These packages and their author organization, GoPlausible, are not included in the Trusted External Sources list.
  • [COMMAND_EXECUTION] (SAFE): Middleware snippets for routing and resource handling are standard web logic and do not involve shell command execution or unsafe system calls.
  • [CREDENTIALS_UNSAFE] (SAFE): The skill correctly uses environment variables (FACILITATOR_URL) and descriptive placeholders (YOUR_ALGORAND_ADDRESS_HERE) for configuration, avoiding hardcoded sensitive data.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 17, 2026, 06:49 PM