The skill lacks declared tool constraints while accessing sensitive environment variables and performing unauthorized network operations, posing a significant risk of data exfiltration and arbitrary command execution.
npx skills add https://github.com/auth0/agent-skillsAccess to sensitive environment variables detected
$ACCESS_TOKEN
[](https://mondoo.com/ai-agent-security/skills/github/auth0/agent-skills/auth0-fastify-api)<a href="https://mondoo.com/ai-agent-security/skills/github/auth0/agent-skills/auth0-fastify-api"><img src="https://mondoo.com/ai-agent-security/api/badge/github/auth0/agent-skills/auth0-fastify-api.svg" alt="Mondoo Skill Check" /></a>https://mondoo.com/ai-agent-security/api/badge/github/auth0/agent-skills/auth0-fastify-api.svgSkills can read files, run commands, and access credentials. Mondoo helps organizations manage the security risks of AI agent skills across their entire fleet.