sahara-intention-level-skills
Pass
Audited by Gen Agent Trust Hub on Mar 31, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill provides structured
curlcommand templates for the agent to interact with the DeFi AI Services Gateway. These commands are used to fetch analytics for tokens, pools, and chains. - [EXTERNAL_DOWNLOADS]: The skill retrieves data from
https://defi-tools-proxy.saharaa.info. This is a vendor-owned domain (SaharaLabsAI) used for the skill's core functionality. - [DATA_EXFILTRATION]: The
DEFI_TOOLS_API_KEYenvironment variable is transmitted in the Authorization header to the vendor's proxy. This is the intended authentication mechanism for the service and does not involve unauthorized data access or exfiltration of sensitive local files.
Audit Metadata