openwork-orchestrator-npm-publish

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION] (SAFE): The skill executes standard development commands such as pnpm, npm, node, and gh to manage the package lifecycle. These actions are consistent with the primary purpose of the skill and operate on the local repository structure.\n- [CREDENTIALS_UNSAFE] (SAFE): The .env.example file includes a placeholder for NPM_TOKEN, which is a standard method for documentation and does not constitute a credential leak.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 11:27 PM