tiktok-shop-promotions
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [NO_CODE]: The skill consists entirely of markdown documentation and instructional prompts. It does not include any scripts (Python, JavaScript, shell), binaries, or automation logic that would perform operations on the host system.
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and analyze user-provided TikTok Shop setup information. While this creates a theoretical surface for indirect prompt injection, the risk is negligible as the skill lacks high-privilege tools, network access, or file system write capabilities.
- [SAFE]: All referenced links and vendor identifiers point to legitimate nexscope-ai resources. The installation instructions use standard package management patterns and target a recognized vendor repository.
Audit Metadata