wecomcli-media

Pass

Audited by Gen Agent Trust Hub on Aug 17, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes shell commands using the wecom-cli utility to manage media files.
  • Evidence: The skill defines commands for wecom-cli media download and wecom-cli media upload to perform its primary tasks.
  • Context: This is the intended primary behavior of the skill and is facilitated through a tool provided by the vendor (wecomteam).
  • [SAFE]: The skill implements specific constraints to prevent data exposure and ensure tool integrity.
  • Evidence: Instructions explicitly state that internal identifiers like media_id and local file_path must not be shown to the user.
  • Evidence: The skill forbids using generic tools like curl or python to bypass the CLI and prohibits guessing file paths or IDs.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 17, 2026, 03:37 AM
Security Audit — agent-trust-hub — wecomcli-media