skills/nexscope-ai/nexscope-ecommerce-skills/ecommerce-geekbi-temu-market-research/Gen Agent Trust Hub
ecommerce-geekbi-temu-market-research
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes Python scripts to perform authenticated POST requests for market research data. The execution is limited to these provided scripts, which are restricted to communicating with the vendor's official API and writing logs to a local directory.
- [CREDENTIALS_UNSAFE]: The skill securely handles authentication by reading the
NEXSCOPE_API_KEYfrom environment variables. It includes explicit code-level checks and documentation to prevent the accidental persistence or exposure of these credentials. - [EXTERNAL_DOWNLOADS]: The skill communicates exclusively with the vendor's official domain (
api.nexscope.ai). No external scripts, packages, or binary dependencies are downloaded from third-party or untrusted sources. - [INDIRECT_PROMPT_INJECTION]: The skill ingests user parameters in JSON format. It effectively mitigates potential injection attacks by implementing a
validate_paramsfunction that checks all inputs against a strict schema (types, ranges, and patterns) before initiating any network operations.
Audit Metadata