skills/zai-org/glm-v/glmv-prompt-gen/Gen Agent Trust Hub

glmv-prompt-gen

Pass

Audited by Gen Agent Trust Hub on May 11, 2026

Risk Level: SAFECREDENTIALS_UNSAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [CREDENTIALS_UNSAFE]: The skill requires the configuration of a ZHIPU_API_KEY environment variable to authenticate requests, which is the standard security practice for this vendor's platform.
  • [EXTERNAL_DOWNLOADS]: The Python script (scripts/prompt_gen.py) performs network requests to https://open.bigmodel.cn/api/paas/v4/chat/completions, the official API endpoint for Zhipu AI.
  • [COMMAND_EXECUTION]: The skill executes a Python script to process local image files and transmit data to the API as intended by its design.
  • [SAFE]: No indicators of malicious activity, such as prompt injection, obfuscation, or unauthorized data exfiltration to third-party domains, were found.
Audit Metadata
Risk Level
SAFE
Analyzed
May 11, 2026, 04:13 AM
Security Audit — agent-trust-hub — glmv-prompt-gen