zonein

Pass

Audited by Gen Agent Trust Hub on Mar 7, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: Comprehensive analysis of the scripts and instructions revealed no malicious patterns, obfuscation, or unauthorized data access.
  • [COMMAND_EXECUTION]: The skill enables high-impact financial operations, including opening trading positions and withdrawing funds. These functions are protected by a programmatic --confirm gate, which ensures that no financial actions are executed without explicit user approval.
  • [EXTERNAL_DOWNLOADS]: The skill communicates with the vendor's official API endpoint at https://mcp.zonein.xyz to fetch market signals and manage agent configurations. This is consistent with the skill's stated purpose.
  • [PROMPT_INJECTION]: The skill processes external market data which represents an indirect prompt injection surface. This risk is mitigated by the skill's design, which uses structured data and requires human-in-the-loop confirmation for all state-changing or financial actions.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 7, 2026, 03:26 AM