rehype
Warn
Audited by Gen Agent Trust Hub on Feb 25, 2026
Risk Level: MEDIUMCOMMAND_EXECUTIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses command-line tools including
forge,cast, andcurlto interact with smart contracts, run test suites, and manage the local filesystem. - [EXTERNAL_DOWNLOADS]: The skill provides instructions to retrieve remote source code, documentation, and configuration templates from GitHub repositories belonging to the
whetstoneresearchorganization, which is not a verified trusted vendor. - [REMOTE_CODE_EXECUTION]: The deployment workflow directs the agent to execute a Solidity script (
DeployRehypeDopplerHook.s.sol) from thewhetstoneresearch/dopplerrepository. Executing scripts from unverified external repositories presents a risk of running malicious or compromised code.
Audit Metadata