alibabacloud-pai-eas-service-diagnose

Pass

Audited by Gen Agent Trust Hub on Jul 13, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: Credential Security
  • The skill explicitly instructs the agent to never read, print, or prompt for sensitive AccessKey or SecretKey values, ensuring credential privacy.
  • [SAFE]: Trusted Resource Acquisition
  • All installation instructions and updates are directed to official, verified vendor domains (alicdn.com) or standard system package managers (Homebrew).
  • [SAFE]: Scoped Network Operations
  • Network connectivity checks are performed via curl against specific service endpoints residing on vendor-controlled domains (aliyuncs.com) using valid authorization tokens.
  • [SAFE]: Privilege Management
  • The skill operates within the user's existing CLI profile permissions. Documentation for manual setup only uses elevated privileges for standard binary placement in system paths.
  • [SAFE]: Indirect Prompt Injection Risk
  • The skill ingests data from service logs to facilitate diagnosis. This ingestion is a primary function and is scoped to the analysis of service health.
  • Ingestion points: aliyun eas describe-service-log (SKILL.md, references/diagnosis-flow.md)
  • Boundary markers: Absent
  • Capability inventory: aliyun eas command suite, curl, jq, openssl
  • Sanitization: Absent
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 13, 2026, 08:18 AM
Security Audit — agent-trust-hub — alibabacloud-pai-eas-service-diagnose