laohan-donghua

Pass

Audited by Gen Agent Trust Hub on Jul 27, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements a structured workflow for video production, utilizing standard command-line tools such as npx and ffmpeg to process local media assets and render video files.
  • [EXTERNAL_DOWNLOADS]: The skill references external resources including the GSAP library via the JSDelivr CDN, Google Fonts, and the Siliconflow API for transcription verification. These target well-known services and are used for the skill's primary purpose of video generation and styling.
  • [COMMAND_EXECUTION]: The instructions guide the agent to execute specific project-related commands (e.g., npx hyperframes render, npx hyperframes transcribe). These operations are scoped to the project directory and are essential for the video automation tasks described.
  • [DATA_EXPOSURE]: The skill instructions contain a hardcoded local file path referencing a specific user directory. While this reveals environment information related to the author, it does not represent a malicious data exposure or exfiltration attempt.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 27, 2026, 07:31 AM
Security Audit — agent-trust-hub — laohan-donghua