byted-las-video-inpaint

Pass

Audited by Gen Agent Trust Hub on Apr 21, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: Comprehensive analysis of the skill's instructions and script logic found no malicious patterns, obfuscation, or unauthorized data access.
  • [COMMAND_EXECUTION]: The skill includes a Python script (scripts/skill.py) that handles API requests. The script implements security best practices by validating input URLs and preventing connections to private or internal network addresses, thereby mitigating SSRF risks.
  • [EXTERNAL_DOWNLOADS]: All network operations are directed to official subdomains of volces.com, the cloud service platform for the skill's author (ByteDance). These external communications are strictly functional and involve no unauthorized data exfiltration.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 21, 2026, 10:40 AM