miniprogram-development
Pass
Audited by Gen Agent Trust Hub on May 19, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill retrieves documentation and skill references from
cnb.cool, which is a Tencent Cloud Native Builder domain. It also fetches development packages from the standard npm registry as part of its documented workflow.\n- [COMMAND_EXECUTION]: Utilizesnpxto execute@cloudbase/cloudbase-mcpandmcporter. These are official command-line tools provided by the author (TencentCloudBase) to manage cloud services and authentication securely.\n- [SAFE]: The skill demonstrates safe secret management by using generic placeholders forappidandenv-idand explicitly instructing the AI to use device-code authentication rather than embedding static credentials in configuration files.
Audit Metadata