kie-ai
Pass
Audited by Gen Agent Trust Hub on Apr 21, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill downloads generated media files from
api.kie.aiandtempfile.redpandaai.coto the user's local directory. - [COMMAND_EXECUTION]: It provides a logic flow for generating and executing Python scripts to automate API calls and file management.
- [DATA_EXFILTRATION]: Transmits user-provided prompts and media data to
api.kie.aiandkieai.redpandaai.cofor processing as part of the intended service functionality. - [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection as it processes external prompts for image generation.
- Ingestion points: Prompt inputs provided to the
createTaskandveo/generateendpoints (file: SKILL.md). - Boundary markers: None specified in the API request templates.
- Capability inventory: Network access to
api.kie.aiand file system writes toD:/ClaudeMediaGen/output-fal/. - Sanitization: No explicit sanitization or validation of the input prompt is described.
Audit Metadata