alibabacloud-pai-eas-service-diagnose
Pass
Audited by Gen Agent Trust Hub on Jul 13, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: Credential Security
- The skill explicitly instructs the agent to never read, print, or prompt for sensitive AccessKey or SecretKey values, ensuring credential privacy.
- [SAFE]: Trusted Resource Acquisition
- All installation instructions and updates are directed to official, verified vendor domains (alicdn.com) or standard system package managers (Homebrew).
- [SAFE]: Scoped Network Operations
- Network connectivity checks are performed via
curlagainst specific service endpoints residing on vendor-controlled domains (aliyuncs.com) using valid authorization tokens. - [SAFE]: Privilege Management
- The skill operates within the user's existing CLI profile permissions. Documentation for manual setup only uses elevated privileges for standard binary placement in system paths.
- [SAFE]: Indirect Prompt Injection Risk
- The skill ingests data from service logs to facilitate diagnosis. This ingestion is a primary function and is scoped to the analysis of service health.
- Ingestion points:
aliyun eas describe-service-log(SKILL.md, references/diagnosis-flow.md) - Boundary markers: Absent
- Capability inventory:
aliyun eascommand suite,curl,jq,openssl - Sanitization: Absent
Audit Metadata