alibabacloud-bailian-rag-knowledgebase
Pass
Audited by Gen Agent Trust Hub on Apr 20, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The
scripts/check_env.jsscript usesexecSyncto runnpm listfor verifying the installation of required SDKs. This is an internal environment check using a hardcoded list of official package names.\n- [EXTERNAL_DOWNLOADS]: The skill requires the installation of official Alibaba Cloud libraries from the NPM registry to interact with the Bailian and Model Studio services.\n- [DATA_EXFILTRATION]: The skill transmits data to official Alibaba Cloud API endpoints to perform knowledge base queries and workspace management. This behavior is consistent with the skill's intended purpose and restricted to the vendor's own infrastructure.
Audit Metadata