jinko

Pass

Audited by Gen Agent Trust Hub on Sep 8, 2026

Risk Level: SAFENO_CODEEXTERNAL_DOWNLOADS
Full Analysis
  • [SAFE]: The skill is purely instructional and acts as a router for other specialized skills. It does not invoke tools, execute shell commands, or perform any computational tasks directly, resulting in no risk of execution-based attacks.
  • [EXTERNAL_DOWNLOADS]: The skill references the author's official GitHub repository (novainsilico/jinko-skills) for plugin bundle updates. This is a legitimate distribution method for the platform's resources and does not involve untrusted third-party code.
  • [DATA_EXPOSURE]: While the skill's documentation and evaluation files mention configuration items such as JINKO_API_KEY and .env files, these are discussed in the context of directing users to the appropriate setup skills (e.g., jinko-sdk-setup) and do not include any hardcoded secrets or sensitive path exposures.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 8, 2026, 12:26 PM
Security Audit — agent-trust-hub — jinko