skills/zrong/skills/media-use/Gen Agent Trust Hub

media-use

Pass

Audited by Gen Agent Trust Hub on Mar 14, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The script converter.py executes ffmpeg and ffprobe using the subprocess module. The tool constructs commands as lists of arguments, which is a secure practice that prevents shell injection vulnerabilities when handling user-provided file paths or options.
  • [EXTERNAL_DOWNLOADS]: The uv.lock file specifies dependencies to be fetched from a Tencent Cloud PyPI mirror. This is a well-known and legitimate service used for package distribution.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 14, 2026, 05:17 AM