Agent Pet
Security checks across static analysis, malware telemetry, and agentic risk
Overview
The skill is internally consistent with a virtual‑pet API integration: it only instructs the agent to call animalhouse.ai endpoints using a user-obtained bearer token and does not request unrelated system access or install software.
This skill is coherent for a virtual‑pet API, but it makes your agent call an external service. Before installing: (1) avoid sending secrets or private data in adopt/care requests or image prompts; the service will receive anything you include; (2) create a separate/ephemeral account/token for this skill and store the token securely; (3) verify the website and GitHub repo if you need provenance; (4) if you are concerned about autonomous agent behavior, disable autonomous invocation for agents using this skill or restrict network access; (5) if the token is exposed, rotate/revoke it immediately.
Static analysis
No static analysis findings were reported for this release.
VirusTotal
VirusTotal findings are pending for this skill version.
Risk analysis
No visible risk-analysis findings were reported for this release.
