muapi-ugc-ads-workflow

Pass

Audited by Gen Agent Trust Hub on May 19, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: Employs the muapi CLI and curl to interface with MuAPI endpoints (api.muapi.ai) for media processing.\n- [EXTERNAL_DOWNLOADS]: Connects to api.muapi.ai to send image data and receive generated content.\n- [DATA_EXFILTRATION]: Correctly utilizes the MUAPI_API_KEY environment variable for authentication, following standard security practices for secret management. No unauthorized data harvesting was detected.\n- [PROMPT_INJECTION]: Ingests the product_name variable into prompts and search queries for the primary purpose of content generation.\n
  • Ingestion points: product_name input in SKILL.md.\n
  • Boundary markers: None present for input interpolation.\n
  • Capability inventory: Web search, muapi CLI, and curl for API interaction.\n
  • Sanitization: No explicit sanitization or validation of the input text is performed.
Audit Metadata
Risk Level
SAFE
Analyzed
May 19, 2026, 02:05 PM
Security Audit — agent-trust-hub — muapi-ugc-ads-workflow