skills/cinience/alicloud-skills/alicloud-platform-multicloud-docs-api-benchmark-test/Gen Agent Trust Hub
alicloud-platform-multicloud-docs-api-benchmark-test
Pass
Audited by Gen Agent Trust Hub on Mar 11, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill executes a local Python script (tests/common/compile_skill_scripts.py) to validate the target skill's integrity.
- [PROMPT_INJECTION]: The skill contains an indirect prompt injection surface by design, as it reads content from external SKILL.md files to identify and execute API actions. Ingestion points: The skill reads documentation and instruction files from the target directory (skills/platform/docs/alicloud-platform-multicloud-docs-api-benchmark/). Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present in the processing logic. Capability inventory: The skill can execute shell commands and perform authenticated Alibaba Cloud API requests. Sanitization: There is no evidence of sanitization or strict schema validation for the data ingested from the external skill files.
Audit Metadata