alibabacloud-dataworks-infra-manage
Pass
Audited by Gen Agent Trust Hub on Apr 11, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is a legitimate administrative tool for Alibaba Cloud DataWorks. It follows security best practices by implementing an 'Execution Gate' that prevents the agent from performing destructive actions like deleting or updating data sources and compute resources via the API.
- [COMMAND_EXECUTION]: The skill's primary function is the execution of
aliyunCLI commands. Commands are constructed to use the official vendor CLI and include specific telemetry (--user-agent AlibabaCloud-Agent-Skills) and endpoint configurations for legitimate cloud management purposes. - [EXTERNAL_DOWNLOADS]: The skill references binary downloads for the Aliyun CLI and its plugins. All such references target official Alibaba Cloud domains (
aliyuncli.alicdn.com), which are verified vendor resources. - [CREDENTIALS_UNSAFE]: The skill contains explicit security instructions for the agent to never read, print, or echo Access Key (AK) or Secret Key (SK) values. It correctly guides users to manage credentials through the standard
aliyun configureutility instead of direct input into the conversation.
Audit Metadata