Kimi
Pass
Audited by Gen Agent Trust Hub on Apr 20, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill operates within its declared scope of assisting with Kimi API integrations. Its architecture is transparent and focused on developer productivity and safety.
- [DATA_EXFILTRATION]: The skill communicates with official Moonshot AI endpoints (api.moonshot.ai) as its primary function. It includes safety checks and redaction patterns to protect sensitive data before transmission.
- [CREDENTIALS_UNSAFE]: It correctly advises using environment variables for authentication and warns against persisting secrets in local files or skill scripts.
- [COMMAND_EXECUTION]: Standard utilities (curl, jq) are used for API interaction and response processing without unsafe input handling.
- [PROMPT_INJECTION]: No malicious injection patterns or safety bypasses were detected in the instructions.
Audit Metadata