video-extend
Pass
Audited by Gen Agent Trust Hub on May 18, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: Mentions the installation of the official @runcomfy/cli package from the npm registry, which is a standard procedure for this tool.- [PROMPT_INJECTION]: Addresses the risk of indirect prompt injection from user-provided video URLs and provides mitigation strategies, such as using JSON interpolation to avoid shell expansion issues.- [SAFE]: Adheres to security best practices by recommending the use of environment variables for API tokens and documenting the secure local storage of credentials with restricted file permissions.
Audit Metadata