press-release-writing
Pass
Audited by Gen Agent Trust Hub on Mar 27, 2026
Risk Level: SAFEREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [REMOTE_CODE_EXECUTION]: The skill's quick start guide includes a command to install the vendor's CLI by downloading a script from 'https://cli.inference.sh' and piping it to a shell. This is the documented installation method for the author's official toolset.
- [COMMAND_EXECUTION]: The skill utilizes the 'infsh' tool to run search and research applications (e.g., Tavily and Exa) to verify statistics and gather context for news announcements. This tool is explicitly listed in the 'allowed-tools' section of the manifest.
- [EXTERNAL_DOWNLOADS]: The CLI installation script downloads binary files from 'dist.inference.sh', which is the vendor's distribution infrastructure.
Audit Metadata