eachlabs-fashion-ai

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • [Data Exposure & Exfiltration] (SAFE): The skill directs users to use an API key via environment variables and makes network requests to api.eachlabs.ai. This is necessary for the skill's primary purpose and does not involve exfiltrating sensitive local files.
  • [Indirect Prompt Injection] (SAFE): The skill processes untrusted user data via prompts and external URLs.
  • Ingestion points: input.prompt, input.image_urls, and input.video_url in SKILL.md examples.
  • Boundary markers: Absent.
  • Capability inventory: Triggers remote AI processing; no local shell or file-write capabilities.
  • Sanitization: Relies on the external API provider's safety filters.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:17 PM