qwen-image-2-pro

Pass

Audited by Gen Agent Trust Hub on Aug 28, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides examples of using the belt CLI tool and npx for package management. These are standard workflows for the described image generation service. All commands are illustrative and intended for user execution.
  • [EXTERNAL_DOWNLOADS]: The skill references installation scripts and documentation hosted on GitHub (raw.githubusercontent.com/inference-sh/...) and the service's official domain (inference.sh). These are well-known or vendor-related sources and are used for legitimate configuration and documentation purposes.
  • [SAFE]: No malicious patterns, such as prompt injection, credential exfiltration, obfuscation, or persistence mechanisms, were detected. The usage of the Bash tool is restricted via allowed-tools to the belt command scope, following the principle of least privilege.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 28, 2026, 01:13 PM
Security Audit — agent-trust-hub — qwen-image-2-pro