uniapp-plugin

Pass

Audited by Gen Agent Trust Hub on Mar 28, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill contains only informational markdown files and documentation. No executable scripts, binaries, or automated installation commands were found.
  • [INDIRECT_PROMPT_INJECTION]: The skill allows the agent to process content from the uni-app plugin market. Ingestion points: Plugin descriptions and documentation from the official marketplace (ext.dcloud.net.cn). Boundary markers: None present in the templates. Capability inventory: Guidance on plugin installation and project configuration. Sanitization: No specific filtering or sanitization of marketplace content is defined.
  • [EXTERNAL_DOWNLOADS]: All external links and resources point to official uni-app domains, which are well-known and trusted services.
  • [DATA_EXFILTRATION]: No network operations or sensitive file access patterns were identified. The skill's focus is limited to project configuration and plugin usage guidance.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 28, 2026, 05:56 PM
Security Audit — agent-trust-hub — uniapp-plugin