higgsfield-pipeline
Pass
Audited by Gen Agent Trust Hub on Aug 23, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists entirely of instructional content and best practices for video production. No malicious scripts, hidden commands, or security vulnerabilities were identified during the analysis.
- [DATA_EXPOSURE]: No hardcoded credentials, sensitive file paths, or unauthorized network operations were found. The skill references legitimate third-party video editing tools (DaVinci Resolve, Premiere, CapCut) and the official Higgsfield domain, which is consistent with its stated purpose.
- [PROMPT_INJECTION]: The skill includes various 'rules' and 'negative constraints' designed to improve the quality of AI-generated video. These are instructional guidelines for creative output and do not attempt to override the safety filters or system instructions of the LLM itself.
- [COMMAND_EXECUTION]: There is no evidence of arbitrary command execution. A reference to a local script (
scripts/build_index.py) in a markdown comment appears to be a note regarding document maintenance rather than an executable instruction for the agent.
Audit Metadata