jianying-inspect
Pass
Audited by Gen Agent Trust Hub on Sep 19, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill invokes the
jianyingRust CLI to perform metadata probing and project inspections based on absolute file paths provided by the user. - [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted external data from video project drafts and media metadata files. Ingestion points: Project drafts and media files processed through
jianying project inspectandjianying media probe(references/workflow.md). Boundary markers: The skill mandates the use of the--jsonflag for CLI tool output to ensure structured data interpretation and provides explicit evidence levels for reporting (SKILL.md). Capability inventory: Tools are restricted to read-only diagnostic operations; the skill explicitly prohibits generating scripts or overwriting source drafts (SKILL.md). Sanitization: Structural integrity and reference consistency are verified using thejianying project verifycommand before results are delivered.
Audit Metadata