signal

Pass

Audited by Gen Agent Trust Hub on Mar 8, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill uses official Node.js packages @personize/sdk and @personize/signal which are vendor-provided resources and necessary for core functionality.
  • [CREDENTIALS_UNSAFE]: Sensitive configuration items such as PERSONIZE_SECRET_KEY, SLACK_WEBHOOK, and WEBHOOK_SECRET are correctly accessed via environment variables, avoiding the risk of hardcoded secrets.
  • [COMMAND_EXECUTION]: The sample recipes demonstrate the use of npx ts-node for running demonstration scripts locally, which is a standard and safe procedure for development testing.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 8, 2026, 11:09 PM