Environment variable access combined with network send.
Critical
- Code
- suspicious.env_credential_access
- Location
- scripts/fetch-asr-recordings.mjs:9
Security audit
Security checks across malware telemetry and agentic risk
This skill is a disclosed ASR transcript reporting helper that uses an auth token to fetch recordings, with no evidence of hidden persistence or unrelated data access.
Install only where the Legion API endpoint and JWT are intended for this use. Treat fetched transcripts, stdout, and generated reports as sensitive business/customer data, and avoid pointing LEGION_HARDWARE_BASE_URL at an untrusted host.
VirusTotal findings are pending for this skill version.
Detected: suspicious.env_credential_access