qwencloud-ops-auth

Pass

Audited by Gen Agent Trust Hub on Apr 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements strict guidelines for handling sensitive credentials, explicitly prohibiting the agent from asking for or displaying API keys in plaintext.
  • [SAFE]: It promotes secure configuration methods using environment variables and .env files, providing clear instructions for users to manage their own secrets.
  • [SAFE]: API verification is performed via curl commands targeting official Alibaba Cloud DashScope endpoints (dashscope-intl.aliyuncs.com).
  • [SAFE]: The update check mechanism utilizes the vendor's own repository (QwenCloud/qwencloud-ai) and local scripts for maintenance, which is consistent with the skill's purpose as a vendor-provided tool.
  • [SAFE]: Documentation references point exclusively to official vendor domains (qwencloud.com, aliyuncs.com) for pricing, management, and setup guides.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 17, 2026, 10:40 AM