cloudbase-wechat-integration

Pass

Audited by Gen Agent Trust Hub on Oct 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill functions as a developer guide, offering templates for Mini Program, JSAPI, and Native WeChat payment flows using CloudBase Integration Center.
  • [SAFE]: Security instructions are explicitly included, warning against hardcoding merchant secrets, private keys, or API keys in source code or sharing them in chat prompts.
  • [SAFE]: The provided code examples use standard CloudBase and WeChat APIs (e.g., wx.cloud.callHTTPFunction, WeixinJSBridge) without any hidden or malicious logic.
  • [SAFE]: External links are restricted to official documentation hosted on docs.cloudbase.net, which is the authoritative source for the CloudBase platform.
  • [SAFE]: The skill encourages authoritative state verification via backend callbacks or order queries rather than relying on potentially spoofed frontend success signals.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 1, 2026, 09:35 AM
Security Audit — agent-trust-hub — cloudbase-wechat-integration