happyhorse-1-0
Pass
Audited by Gen Agent Trust Hub on May 18, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides instructions for invoking the
runcomfyCLI tool to process video generation requests. It explicitly documents that user prompts are handled as JSON strings within the CLI to mitigate shell injection risks. - [EXTERNAL_DOWNLOADS]: The skill requires the installation of the
@runcomfy/cliNode.js package from the official npm registry. Additionally, the CLI is documented to download generated media assets from verified vendor domains, specificallyruncomfy.netandruncomfy.com.
Audit Metadata