higgsfield-video
Pass
Audited by Gen Agent Trust Hub on Jul 11, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The documentation references the official Higgsfield Python SDK ('higgsfield-client') hosted on the vendor's GitHub repository ('github.com/higgsfield-ai/higgsfield-client'). This is a standard reference for programmatic access to the service described in the skill.
- [CREDENTIALS_UNSAFE]: The skill mentions environment variables ('HF_KEY', 'HF_API_KEY') and the use of 'Authorization: Bearer' headers as standard practices for authenticating with the Higgsfield Cloud API. It does not contain any hardcoded secrets, keys, or instructions to store credentials insecurely.
- [PROMPT_INJECTION]: The instructions do not contain patterns designed to override agent safety protocols. Conversely, the skill explicitly includes a 'Rights, consent, and data' section that instructs the agent to enforce consent policies and decline the generation of unauthorized deepfakes or deceptive content.
Audit Metadata