xero
Pass
Audited by Gen Agent Trust Hub on Mar 1, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [SAFE]: The skill interacts exclusively with the official Xero API at api.xero.com using standard OAuth 2.0 authorization headers. No unauthorized data exfiltration or suspicious patterns were detected.
- [COMMAND_EXECUTION]: Uses curl and jq to fetch and parse JSON data from the accounting platform. These commands are used for their intended purpose with no evidence of shell injection or malicious parameters.
Audit Metadata