rehype

Warn

Audited by Gen Agent Trust Hub on Feb 25, 2026

Risk Level: MEDIUMCOMMAND_EXECUTIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses command-line tools including forge, cast, and curl to interact with smart contracts, run test suites, and manage the local filesystem.
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions to retrieve remote source code, documentation, and configuration templates from GitHub repositories belonging to the whetstoneresearch organization, which is not a verified trusted vendor.
  • [REMOTE_CODE_EXECUTION]: The deployment workflow directs the agent to execute a Solidity script (DeployRehypeDopplerHook.s.sol) from the whetstoneresearch/doppler repository. Executing scripts from unverified external repositories presents a risk of running malicious or compromised code.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 25, 2026, 02:36 AM