tencent-docs

Pass

Audited by Gen Agent Trust Hub on Aug 24, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses curl and jq via the Bash tool to interact with the Tencent Docs Open API. All commands target the official domain docs.qq.com.- [DATA_EXPOSURE]: The skill uses environment variables (TENCENTDOCS_ACCESS_TOKEN, TENCENTDOCS_CLIENT_ID, TENCENTDOCS_OPEN_ID) injected by a connector for authentication. It includes explicit instructions never to echo, print, or log the access token to prevent accidental exposure.- [PRIVILEGE_ESCALATION]: The skill requires user confirmation for destructive or sensitive operations such as renaming, moving, or deleting files, ensuring actions are authorized by the user.- [EXTERNAL_DOWNLOADS]: The skill fetches data from docs.qq.com and references official documentation and authentication links (auth.acedata.cloud, docs.qq.com). These are well-known services related to the skill's purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 24, 2026, 05:40 PM
Security Audit — agent-trust-hub — tencent-docs