Back to skill

Security audit

huawei-cloud-dcs-count

Security checks for vulnerabilities and agentic risk

Overview

This skill is a read-only Huawei Cloud DCS inventory helper that counts Redis/Memcached instances and does not show hidden or destructive behavior.

Install only if you need Huawei Cloud DCS counts. Use a read-only IAM policy, avoid hardcoding AK/SK, verify the KooCLI download source before running sudo install commands, and run the test script only with trusted region variables or template values.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.