ai-model-nodejs
Pass
Audited by Gen Agent Trust Hub on Sep 27, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill handles untrusted user input for text and image generation while possessing access to powerful cloud management tools that could be abused if the AI is manipulated.
- Ingestion points: Untrusted data enters the agent context through the
messagesarray ingenerateText/streamTextand thepromptstring ingenerateImage(found inreferences/api-reference.md). - Boundary markers: The instructions do not specify the use of delimiters or explicit warnings for the AI to ignore potentially malicious commands embedded in user-provided prompts.
- Capability inventory: The skill utilizes the
callCloudApitool with thetcbservice to manage environment settings and AI models. It also usesmanageFunctionsto configure cloud functions (found inSKILL.md). - Sanitization: There is no evidence of input validation, filtering, or sanitization described for the data passed to the AI models.
- [COMMAND_EXECUTION]: The skill provides instructions for the agent to install dependencies and execute platform-specific tools to configure the cloud environment.
- Evidence: The skill uses
npm installfor the SDK and makes calls to MCP tools includingqueryEnv,callCloudApi, andmanageFunctionsto interact with Tencent Cloud resources. - [EXTERNAL_DOWNLOADS]: The skill references the official vendor SDK from a standard registry.
- Evidence: Downloads the
@cloudbase/node-sdkpackage from the official NPM registry, which is a well-known service and targets the vendor's own infrastructure.
Audit Metadata