miku-live
Pass
Audited by Gen Agent Trust Hub on Apr 22, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill generates and executes shell commands and scripts in multiple languages (JavaScript, Node.js, Go, Java, PHP) to interact with Qiniu Miku Live APIs.- [PROMPT_INJECTION]: The skill processes user-supplied data in
params_jsonto construct API calls. Ingestion points:params_jsonandintentfields inSKILL.mdandreferences/schemas.md. Boundary markers: Structured input validation using JSON schemas and thereferences/interface-catalog.md. Capability inventory: Execution of curl and language runtimes to perform API tasks. Sanitization: Mandatory mapping of intents to a verified interface catalog.- [SAFE]: Authentication credentials are handled via environment variables or parameters with explicit instructions to prevent their exposure in outputs. All API operations target official Qiniu domains.
Audit Metadata