hmos-jsleak-analysis

Pass

Audited by Gen Agent Trust Hub on Jun 22, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes local executable binaries (rawheap_translator, heap_cluster) to process large memory dump files. These executions are core to the skill's utility and are triggered only on files provided by the user for memory analysis.
  • [EXTERNAL_DOWNLOADS]: The documentation provides a link to an external repository on GitCode (HarmonyOS_Skills/harmonyos-agent-skills.git) for users to obtain the heap_cluster utility, which is not included in the main package due to file size constraints. This reference is informational and related to the professional use case of the skill.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 22, 2026, 10:16 AM
Security Audit — agent-trust-hub — hmos-jsleak-analysis