higgsfield-video

Pass

Audited by Gen Agent Trust Hub on Jul 11, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The documentation references the official Higgsfield Python SDK ('higgsfield-client') hosted on the vendor's GitHub repository ('github.com/higgsfield-ai/higgsfield-client'). This is a standard reference for programmatic access to the service described in the skill.
  • [CREDENTIALS_UNSAFE]: The skill mentions environment variables ('HF_KEY', 'HF_API_KEY') and the use of 'Authorization: Bearer' headers as standard practices for authenticating with the Higgsfield Cloud API. It does not contain any hardcoded secrets, keys, or instructions to store credentials insecurely.
  • [PROMPT_INJECTION]: The instructions do not contain patterns designed to override agent safety protocols. Conversely, the skill explicitly includes a 'Rights, consent, and data' section that instructs the agent to enforce consent policies and decline the generation of unauthorized deepfakes or deceptive content.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 11, 2026, 01:51 PM
Security Audit — agent-trust-hub — higgsfield-video