qwen-image-2-pro
Pass
Audited by Gen Agent Trust Hub on Aug 6, 2026
Risk Level: SAFEPROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [PROMPT_INJECTION]: The skill processes user-supplied text to generate images, which serves as a surface for indirect prompt injection.\n
- Ingestion points: The
promptandnegative_promptfields in the JSON input structures withinSKILL.md.\n - Boundary markers: User inputs are encapsulated within JSON objects passed to the command-line tool.\n
- Capability inventory: The skill is configured to use the
beltCLI tool viaBash.\n - Sanitization: Input filtering and safety protocols are managed by the
inference.shplatform.\n- [EXTERNAL_DOWNLOADS]: The skill references thebeltCLI and theinferenceshPython SDK, providing links to the vendor's official GitHub repository and documentation for installation.
Audit Metadata