wecomcli-doc-manage

Pass

Audited by Gen Agent Trust Hub on Aug 18, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill interacts with the wecom-cli tool. The instructions correctly mandate the use of structured JSON arguments and explicitly forbid executing commands through exec, shell, or generic terminal environments. This design mitigates risks of command injection.
  • [SAFE]: The skill lacks any patterns of data exfiltration, unauthorized network requests, or attempts to access sensitive system files like SSH keys or environment configurations.
  • [SAFE]: All external dependencies (such as wecomcli-contact and wecomcli-doc) are internal to the vendor's ecosystem and are handled through documented cross-skill orchestration rather than arbitrary script execution.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 18, 2026, 10:33 AM
Security Audit — agent-trust-hub — wecomcli-doc-manage