huawei-cloud-billing-scout

Pass

Audited by Gen Agent Trust Hub on Aug 3, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references official Huawei Cloud download locations for the hcloud CLI tool within the user installation guides. These downloads originate from well-known and trusted infrastructure domains (myhuaweicloud.com).
  • [COMMAND_EXECUTION]: The agent is authorized to use the hcloud tool to perform billing inquiries. As specified in the skill's command contract, only read-only List and Show operations are permitted, preventing any accidental or malicious account modifications.
  • [DATA_EXFILTRATION]: Comprehensive data handling rules are established in SKILL.md and the billing ontology. The agent is instructed to mask sensitive identifiers such as Account IDs and Order IDs, and is strictly forbidden from disclosing credentials or full operational IDs in its responses.
  • [REMOTE_CODE_EXECUTION]: The skill documentation includes a script-based installation method for the CLI tool. This is explicitly labeled for user execution, and the agent's instructions specifically limit its own capabilities to non-modifying commands to prevent it from executing unauthorized scripts.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 3, 2026, 06:39 AM
Security Audit — agent-trust-hub — huawei-cloud-billing-scout