The skill exposes sensitive environment variables and performs unauthorized network and file operations without declaring necessary tool permissions or providing required documentation.
npx skills add https://github.com/auth0/agent-skillsAccess to sensitive environment variables detected (seen 2 times in this file at lines 77, 119)
process.env.SECRET
SKILL.md links to "references/api.md" but the file is not part of the skill package — the workflow silently degrades or the content is sourced elsewhere at runtime
[API Reference](references/api.md)
SKILL.md links to "references/integration.md" but the file is not part of the skill package — the workflow silently degrades or the content is sourced elsewhere at runtime
[Integration Guide](references/integration.md)
SKILL.md links to "references/setup.md" but the file is not part of the skill package — the workflow silently degrades or the content is sourced elsewhere at runtime
[Setup Guide](references/setup.md)
[](https://mondoo.com/ai-agent-security/skills/github/auth0/agent-skills/auth0-express)<a href="https://mondoo.com/ai-agent-security/skills/github/auth0/agent-skills/auth0-express"><img src="https://mondoo.com/ai-agent-security/api/badge/github/auth0/agent-skills/auth0-express.svg" alt="Mondoo Skill Check" /></a>https://mondoo.com/ai-agent-security/api/badge/github/auth0/agent-skills/auth0-express.svgSkills can read files, run commands, and access credentials. Mondoo helps organizations manage the security risks of AI agent skills across their entire fleet.