aliyun-cloudauth-verify
Pass
Audited by Gen Agent Trust Hub on Apr 4, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: Fetches OpenAPI metadata from Alibaba Cloud's official domain (
api.aliyun.com). This targets a well-known service to discover API schemas for the identity verification product.\n- [COMMAND_EXECUTION]: Executes a local Python script to fetch metadata and runspy_compilefor script validation. These are standard development tasks for interacting with cloud provider APIs.\n- [DATA_EXFILTRATION]: Instructions reference standard Alibaba Cloud credential paths such as~/.alibabacloud/credentialsand environment variables. However, no logic in the provided scripts or instructions attempts to read or transmit these credentials to external entities.
Audit Metadata