blucli
Warn
Audited by Gen Agent Trust Hub on Mar 11, 2026
Risk Level: MEDIUMEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill configuration specifies the installation of a binary from a third-party GitHub repository (github.com/steipete/blucli/cmd/blu@latest) using the Go compiler. This source is not recognized as a trusted organization or well-known technology service, and it is not a resource owned by the skill author.
- [COMMAND_EXECUTION]: The skill relies on executing the
bluutility to perform operations such as device discovery, playback management, and volume adjustment, which involves spawning system subprocesses to interact with hardware on the network.
Audit Metadata