skills/xiaomi/hiui/hiui-refine/Gen Agent Trust Hub

hiui-refine

Pass

Audited by Gen Agent Trust Hub on Jul 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill implements a robust requirement refinement workflow for enterprise systems. It features multiple confirmation gates ("requirementGate", "generationInputGate") and explicit instructions to separate repository context from user intent, effectively mitigating risks associated with processing external project data.
  • [COMMAND_EXECUTION]: The skill provides a local Python script "scripts/check_version_consistency.py" for version validation. Analysis of the source code confirms it only performs read operations on the skill's own manifest and markdown files to compare version strings, with no network activity or unsafe execution patterns detected.
  • [DATA_EXFILTRATION]: The skill includes functionality to scan the local repository for context (e.g., in "views/", "api/", and "types/" directories). This behavior is scoped to the local environment to improve requirement accuracy and lacks any instructions or capabilities to transmit the gathered data to external domains.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 22, 2026, 05:30 AM
Security Audit — agent-trust-hub — hiui-refine