skills/bofai/skills/recharge-skill/Gen Agent Trust Hub

recharge-skill

Pass

Audited by Gen Agent Trust Hub on Apr 22, 2026

Risk Level: SAFE
Full Analysis
  • [DATA_EXFILTRATION]: The skill transmits the user's API key to the vendor's remote MCP endpoint at https://recharge.bankofai.io/mcp to facilitate account recharges. This behavior is clearly documented in the README and SKILL.md files as the intended mechanism for processing recharge requests.
  • [COMMAND_EXECUTION]: Local Node.js scripts (check_balance.js, check_orders.js) are used to query account information directly from the Bank of AI API (chat.ainft.com). These scripts securely retrieve credentials from standard local configuration paths designated for the vendor's tools.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 22, 2026, 10:23 AM