edgeone-makers-cloud-functions
Fail
Audited by Gen Agent Trust Hub on Aug 16, 2026
Risk Level: CRITICAL
Full Analysis
- [EXTERNAL_DOWNLOADS]: The documentation references template repositories hosted on GitHub under the
TencentEdgeOneorganization. These are official starter projects for the supported runtimes (Gin, Echo, Chi, Express, Koa, FastAPI, etc.). - [COMMAND_EXECUTION]: Instructions are provided for installing and using the vendor's command-line interface tool (
edgeone) to facilitate local development and environment synchronization (edgeone makers dev,edgeone makers env pull). These are standard development workflows. - [CREDENTIALS_SAFE]: The documentation promotes secure practices by instructing users to manage sensitive information via the
context.envobject rather than hardcoding credentials or using process-wide environment variables. - [DATA_EXPOSURE]: Automated scanner flags for reference files and preview URLs (
*.edgeone.site,*.edgeone.run) were evaluated. These resources are part of the vendor's own ecosystem used for hosting function previews and technical documentation; no malicious behavior or exfiltration patterns were found within the skill content.
Recommendations
- CRITICAL: 3 file(s) identified as malware by FileRep - DO NOT USE
- Contains 21 malicious URL(s) - DO NOT USE
Audit Metadata