ai-model-web
Pass
Audited by Gen Agent Trust Hub on Apr 8, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues detected in the skill instructions or provided code snippets.
- [EXTERNAL_DOWNLOADS]: The skill recommends installing the official vendor package
@cloudbase/js-sdkvia npm, which is consistent with the skill's documented purpose. - [DATA_EXFILTRATION]: Uses placeholders for environment IDs and publishable keys in code examples, preventing credential exposure and correctly advising developers to use publishable keys instead of secret keys.
- [PROMPT_INJECTION]: The skill facilitates the processing of user-supplied messages for AI generation, which is its primary documented function. It recommends user authentication as a security measure before allowing AI operations.
Audit Metadata