telegram-serverless

Pass

Audited by Gen Agent Trust Hub on Oct 9, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTIONCREDENTIALS_UNSAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill leverages the tgcloud CLI to perform project lifecycle tasks such as scaffolding (init), module deployment (push), and database management (migrate). Operations are documented to be performed with explicit authorization and distinguish between local validation and cloud execution.
  • [EXTERNAL_DOWNLOADS]: The skill references and downloads project-specific tooling and dependencies from the official NPM registry, including the @tgcloud/cli and @tgcloud/create-bot packages. These are used to manage the Telegram Serverless environment.
  • [INDIRECT_PROMPT_INJECTION]: As the skill handles external data from Telegram updates and Mini App frontend calls, it acknowledges the indirect prompt injection attack surface. It mitigates this by providing specific instructions to use platform-verified context (ctx.initData) for authentication and implementation patterns for input validation and owner-based record scoping.
  • [CREDENTIALS_UNSAFE]: The skill includes comprehensive safety rules against the exposure of sensitive data. It explicitly forbids hardcoding API tokens, printing secrets in logs, or requesting credentials in chat, recommending the use of interactive login or secure environment variable injection.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 9, 2026, 03:57 PM