jianying-draft

Pass

Audited by Gen Agent Trust Hub on Sep 19, 2026

Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill operates using a local domain-specific CLI (jianying) to handle video project metadata. Execution is limited to supported capabilities and requires explicit user authorization for operations with potential side effects.\n- [DATA_EXFILTRATION]: No exfiltration risks were identified. Instructions explicitly prohibit the collection of extraneous credentials and restrict data processing to authorized local and provider-defined environments.\n- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted project drafts and media metadata (ingestion points in SKILL.md). It uses jianying-job/v2 schema boundaries and performs structural validation (sanitization) using CLI-based auditing capabilities (doctor, probe, verify). This surface is well-defended by mandatory check-and-verify workflows.\n- [SAFE]: The skill follows secure design principles, including mandatory isolation for file writes, a ban on generating executable scripts, and strict rules against automatic retries for ambiguous task states.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 19, 2026, 11:56 PM
Security Audit — agent-trust-hub — jianying-draft