stash-encryption

Pass

Audited by Gen Agent Trust Hub on Mar 11, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides legitimate documentation and code examples for the @cipherstash/stack library, focusing on client-side encryption and secure data handling.
  • [EXTERNAL_DOWNLOADS]: The skill references the installation of the official @cipherstash/stack and @cipherstash/protect-ffi NPM packages. These are vendor-owned dependencies required for the skill's encryption functionality.
  • [DATA_EXFILTRATION]: Documentation identifies connections to official vendor infrastructure, including cipherstash.com for registration and a dedicated Token Service (CTS) endpoint on viturhosted.net for identity-aware encryption. These are standard operational requirements for the SDK.
  • [CREDENTIALS_UNSAFE]: The file correctly identifies necessary environment variables for authentication (e.g., CS_CLIENT_KEY, CS_CLIENT_ID). These are presented as placeholders for users to configure their own credentials and do not contain hardcoded secrets.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 11, 2026, 07:30 AM