cardano-identity

Pass

Audited by Gen Agent Trust Hub on Mar 10, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCREDENTIALS_UNSAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs the @indigoprotocol/cardano-mcp Node.js package, which is a vendor-owned resource used to interface with the Cardano blockchain.
  • [CREDENTIALS_UNSAFE]: The configuration specifies a requirement for the SEED_PHRASE environment variable. This is a functional requirement for the skill's wallet-interaction capabilities and no hardcoded secrets were identified.
  • [SAFE]: No evidence of prompt injection, obfuscation, or unauthorized network activity was found within the analyzed files.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 10, 2026, 11:30 AM