dify-docs-env-vars
Pass
Audited by Gen Agent Trust Hub on Oct 6, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The verification script
verify-env-docs.pyutilizessubprocess.runto executegitcommands (such asls-treeandshow). These operations are used to audit environment variable definitions across different git references (e.g., comparing a release tag to the current main branch). The execution uses argument lists to avoid shell injection and is scoped to local repository management. - [INDIRECT_PROMPT_INJECTION]: The skill is designed to process untrusted data from the codebase, including
.env.examplefiles and Pydantic configuration files, which could theoretically contain malicious instructions. However, the script uses specific regular expressions to parse these files for structured data (variable names and default values) rather than passing raw text to the LLM's primary instruction flow, and the risk is considered low and inherent to the skill's purpose as a linter. - [SAFE]: The script includes proactive security measures such as
is_placeholder, which explicitly identifies and ignores hardcoded example secrets (e.g.,sk-9f73s) to ensure they are not mistakenly documented as valid default values. All identified external references target the project's own repository structure.
Audit Metadata