Shell command execution detected (child_process).
Critical
- Code
- suspicious.dangerous_exec
- Location
- tests/run-resend-send-tests.mjs:11
Security audit
Security checks across malware telemetry and agentic risk
This skill is a disclosed, send-only Resend email helper that defaults to dry-run and requires both explicit send flags and recipient allowlisting for real emails.
Install only if you want a Codex skill that can send email through your Resend account. Keep RESEND_ALLOWED_TO narrow, review the dry-run payload before using --send, and remember that dry-run logs include the full message body even though the API key is redacted.
63/63 vendors flagged this skill as clean.
Detected: suspicious.dangerous_exec, suspicious.env_credential_access