qwencloud-ops-auth
Pass
Audited by Gen Agent Trust Hub on Apr 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implements strict guidelines for handling sensitive credentials, explicitly prohibiting the agent from asking for or displaying API keys in plaintext.
- [SAFE]: It promotes secure configuration methods using environment variables and
.envfiles, providing clear instructions for users to manage their own secrets. - [SAFE]: API verification is performed via
curlcommands targeting official Alibaba Cloud DashScope endpoints (dashscope-intl.aliyuncs.com). - [SAFE]: The update check mechanism utilizes the vendor's own repository (
QwenCloud/qwencloud-ai) and local scripts for maintenance, which is consistent with the skill's purpose as a vendor-provided tool. - [SAFE]: Documentation references point exclusively to official vendor domains (
qwencloud.com,aliyuncs.com) for pricing, management, and setup guides.
Audit Metadata