cloudbase-declarative-deploy
Pass
Audited by Gen Agent Trust Hub on Sep 27, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes tools that execute shell commands defined in a project's local configuration.
- Evidence: The
deployBuildanddeployApplytools executebuildCommand,installCommand, anddeployCmddeclarations found incloudbasercfiles. - Mitigation: The skill implements a 'Plan before apply' workflow and enforces a requirement for
confirm=trueandconfirmDestructive=trueparameters before performing write operations. - [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted configuration data that influences agent actions and command execution.
- Ingestion points:
cloudbaserc.json,cloudbaserc.yaml,cloudbaserc.yml, andcloudbaserc.jsfiles located in the project root. - Capability inventory: Shell command execution, local file system reads, and cloud resource management via the
deployBuild,deployPlan, anddeployApplytools. - Boundary markers: The skill performs schema validation against the official JSON schema before execution.
- Sanitization: Uses template variable rendering (
{{env.*}}) for environment-specific data and encourages storing secrets in.envfiles rather than the config itself. - [EXTERNAL_DOWNLOADS]: The skill references an external resource for configuration validation.
- Evidence: Fetches the official JSON schema from
https://static.cloudbase.net/cli/cloudbaserc.schema.jsonto validate project configurations. This is an official resource from the vendor 'tencentcloudbase'.
Audit Metadata