cloudbase-document-database-in-wechat-miniprogram

Pass

Audited by Gen Agent Trust Hub on May 15, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is purely instructional, providing guidance and code examples for the CloudBase WeChat Mini Program SDK. It emphasizes secure practices, such as correctly handling the system-managed _openid field and implementing security rules.
  • [EXTERNAL_DOWNLOADS]: The skill references documentation and sibling skills hosted on cnb.cool. This is a legitimate code hosting platform used by the vendor (Tencent Cloud) for its technical resources.
  • [PROMPT_INJECTION]: There are no instructions that attempt to bypass safety guidelines, override agent behavior, or extract system prompts. The language used is strictly for instructional purposes.
  • [DATA_EXFILTRATION]: No patterns were detected that involve accessing sensitive local files (e.g., SSH keys, environment variables) or sending data to unauthorized external domains.
  • [REMOTE_CODE_EXECUTION]: The skill does not provide instructions for downloading or executing arbitrary scripts or packages from untrusted sources. All mentioned libraries, such as @cloudbase/js-sdk, are official vendor resources.
Audit Metadata
Risk Level
SAFE
Analyzed
May 15, 2026, 03:51 AM