create-workflow
Pass
Audited by Gen Agent Trust Hub on Feb 23, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: References an official MCP server from the vendor's documentation domain (docs.vapi.ai).
- [COMMAND_EXECUTION]: Provides standard API interaction examples using curl to manage workflows and calls.
- [CREDENTIALS_UNSAFE]: Correctly references the VAPI_API_KEY as an environment variable rather than including hardcoded secrets.
- [DATA_EXFILTRATION]: Network activity is restricted to the official vendor API (api.vapi.ai).
Audit Metadata