alibabacloud-sdk-usage

Pass

Audited by Gen Agent Trust Hub on Jul 9, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is designed to facilitate the use of Alibaba Cloud SDKs and OpenAPIs through a set of dedicated MCP tools (alibabacloud-core).
  • [SAFE]: It explicitly instructs the agent not to hardcode credentials and to use the default credential provider chain, which aligns with industry security best practices.
  • [COMMAND_EXECUTION]: The skill utilizes a tool (AlibabaCloud___CallCLI) to execute specific aliyun CLI commands. These commands are used to fetch metadata, dependencies, and code samples from the Alibaba Cloud OpenAPI Explorer, which is the intended functionality.
  • [EXTERNAL_DOWNLOADS]: The skill guides the agent to install or update official Alibaba Cloud SDK dependencies based on metadata retrieved from the vendor's API. This is standard behavior for a cloud development-focused skill.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 9, 2026, 03:11 AM
Security Audit — agent-trust-hub — alibabacloud-sdk-usage