glmv-prompt-gen
Pass
Audited by Gen Agent Trust Hub on May 11, 2026
Risk Level: SAFECREDENTIALS_UNSAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [CREDENTIALS_UNSAFE]: The skill requires the configuration of a
ZHIPU_API_KEYenvironment variable to authenticate requests, which is the standard security practice for this vendor's platform. - [EXTERNAL_DOWNLOADS]: The Python script (
scripts/prompt_gen.py) performs network requests tohttps://open.bigmodel.cn/api/paas/v4/chat/completions, the official API endpoint for Zhipu AI. - [COMMAND_EXECUTION]: The skill executes a Python script to process local image files and transmit data to the API as intended by its design.
- [SAFE]: No indicators of malicious activity, such as prompt injection, obfuscation, or unauthorized data exfiltration to third-party domains, were found.
Audit Metadata