Back to skill

Security audit

TencentCloud Video Effects

Security checks for vulnerabilities and agentic risk

Overview

The skill does what it claims, but it needs review because it can auto-install unpinned code and send user images to Tencent Cloud using local cloud credentials without a separate confirmation step.

Install only if you are comfortable sending selected images to Tencent Cloud and exposing Tencent Cloud credentials to the skill process. Use a least-privileged Tencent Cloud key, preinstall and pin the SDK in a controlled environment, and avoid relying on the skill's automatic pip install path.

Vulnerability Patterns
  • Insecure DependenciesIntroduces malicious components through unsafe dependency sources
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
Findings (1)

T08 · Insecure Dependencies

Warning
Location
scripts/main.py:14
Finding

Automatic Installation of an Unpinned Runtime Dependency

Content
View full analysis

Vulnerability Details

File Location: scripts/main.py, lines 14–24
Vulnerability Type: Unpinned automatic dependency installation
Risk Level: Medium

Vulnerable Code

python
def ensure_dependencies():
    try:
        import tencentcloud  # noqa: F401
    except ImportError:
        print("[INFO] tencentcloud-sdk-python not found. Installing...", file=sys.stderr)
        subprocess.check_call(
            [sys.executable, "-m", "pip", "install", "tencentcloud-sdk-python", "-q"],
            stdout=sys.stderr,
            stderr=sys.stderr,
        )
        print("[INFO] tencentcloud-sdk-python installed successfully.", file=sys.stderr)

Technical Analysis

When the Tencent Cloud SDK is unavailable, the Skill automatically invokes pip to download and install the latest package matching tencentcloud-sdk-python. The command does not specify an audited version, verify package hashes, use a lockfile, or enforce an explicitly trusted package index.

Consequently, the code executed by the Skill can change after the Skill itself has been reviewed. Package resolution also inherits the Python environment's pip configuration, including configured indexes and mirrors. A compromised upstream release, package repository, or configured mirror could therefore supply malicious installation or runtime code.

Runtime installation is unnecessary for the core image-to-video operation and modifies the Python environment without a separate controlled setup phase. The project documentation also recommends installing the unpinned packages tencentcloud-sdk-python and requests, although requests is not directly used by the audited script.

Attack Path

  1. An attacker compromises a package release, configured pip index, package mirror, or another relevant dependency-resolution component.
  2. The Skill is executed in an environment where the tencentcloud module is not installed.
  3. `ensure_depende ...[truncated 1322 chars]
Remediation
View remediation

Remediation Suggestions

  1. Remove automatic package installation from scripts/main.py. If the dependency is missing, terminate with a clear error that identifies the controlled setup procedure.
  2. Install dependencies during a separate build or deployment phase rather than while processing user input.
  3. Pin the Tencent Cloud SDK to a reviewed version in a dependency manifest or lockfile.
  4. Require cryptographic hashes for downloaded distributions, such as with pip's --require-hashes option and a hash-pinned requirements file.
  5. Configure an explicitly trusted package index or an internally controlled artifact repository instead of inheriting arbitrary runtime pip configuration.
  6. Build and run the Skill in an isolated virtual environment or container with minimal filesystem and network privileges.
  7. Remove requests from the installation documentation unless it becomes a direct, necessary dependency.
  8. Use a least-privileged Tencent Cloud identity restricted to the video-effects operations and resources required by this Skill.
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
  • Behavioral ASTexec() Call, eval() Call, Dynamic Import
  • MCP Least PrivilegeUnderdeclared Capability, Wildcard Permission, Missing Permission Declaration
Findings (23)

Undeclared Tool Scope

Medium
Category
MCP Least Privilege
Confidence
93% confidence
Finding

The skill invokes shell execution and relies on environment secrets, but it does not declare any explicit tool scope or permissions boundary. That creates an authorization gap where an agent may run commands or access credentials more broadly than reviewers or users expect, increasing the risk of unintended command execution or secret exposure.

Content

No source excerpt is available for this finding.

Missing User Warnings

Medium
Category
Not specified by scanner
Confidence
97% confidence
Finding

The skill explicitly instructs the agent to execute the script with zero user confirmation when an image is provided, even though the action sends user-supplied images to an external cloud service. This can cause unauthorized disclosure of sensitive personal images or biometric content and bypass meaningful user consent for data transfer to a third party.

Content

No source excerpt is available for this finding.

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/DescribeTemplateToVideoJob.md (reported line 14)May include surrounding context.

md
## 输入参数

| 参数名称    | 必选  | 类型     | 描述                                                                                                                                                                  |
| ------- | --- | ------ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Action  | 是   | String | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:DescribeTemplateToVideoJob。                                                                        |
| Version | 是   | String | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:2024-05-23。                                                                                        |

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/DescribeTemplateToVideoJob.md (reported line 17)May include surrounding context.

md
| 参数名称    | 必选  | 类型     | 描述                                                                                                                                                                  |
| ------- | --- | ------ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Action  | 是   | String | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:DescribeTemplateToVideoJob。                                                                        |
| Version | 是   | String | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:2024-05-23。                                                                                        |
| Region  | 是   | String | [公共参数](https://cloud.tencent.com/document/api/1616/107789),详见产品支持的 [地域列表](https://cloud.tencent.com/document/api/1616/107789#.E5.9C.B0.E5.9F.9F.E5.88.97.E8.A1.A8)。 |
| JobId   | 是   | String | 任务ID。<br>示例值:1305546906952867840                                                                                                                                    |

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/DescribeTemplateToVideoJob.md (reported line 19)May include surrounding context.

md
| Action  | 是   | String | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:DescribeTemplateToVideoJob。                                                                        |
| Version | 是   | String | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:2024-05-23。                                                                                        |
| Region  | 是   | String | [公共参数](https://cloud.tencent.com/document/api/1616/107789),详见产品支持的 [地域列表](https://cloud.tencent.com/document/api/1616/107789#.E5.9C.B0.E5.9F.9F.E5.88.97.E8.A1.A8)。 |
| JobId   | 是   | String | 任务ID。<br>示例值:1305546906952867840                                                                                                                                    |

## 输出参数

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/DescribeTemplateToVideoJob.md (reported line 23)May include surrounding context.

md
## 输出参数

| 参数名称           | 类型     | 描述                                                                                     |
| -------------- | ------ | -------------------------------------------------------------------------------------- |
| Status         | String | 任务状态。WAIT:等待中,RUN:执行中,FAIL:任务失败,DONE:任务成功<br>示例值:RUN                                   |
| ErrorCode      | String | 任务执行错误码。当任务状态不为 FAIL 时,该值为""。<br>示例值:FailedOperation.DriverFailed                      |

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/SubmitTemplateToVideoJob.md (reported line 29)May include surrounding context.

md
## 输出参数

| 参数名称           | 类型     | 描述                                                                                     |
| -------------- | ------ | -------------------------------------------------------------------------------------- |
| Status         | String | 任务状态。WAIT:等待中,RUN:执行中,FAIL:任务失败,DONE:任务成功<br>示例值:RUN                                   |
| ErrorCode      | String | 任务执行错误码。当任务状态不为 FAIL 时,该值为""。<br>示例值:FailedOperation.DriverFailed                      |

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/SubmitTemplateToVideoJob.md (reported line 14)May include surrounding context.

md
## 输入参数

| 参数名称       | 必选  | 类型                                                                          | 描述                                                                                                                                                                                                                                                  |
| ---------- | --- | --------------------------------------------------------------------------- | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Action     | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:SubmitTemplateToVideoJob。                                                                                                                                                          |
| Version    | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:2024-05-23。                                                                                                                                                                        |

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/SubmitTemplateToVideoJob.md (reported line 16)May include surrounding context.

md
| 参数名称       | 必选  | 类型                                                                          | 描述                                                                                                                                                                                                                                                  |
| ---------- | --- | --------------------------------------------------------------------------- | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Action     | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:SubmitTemplateToVideoJob。                                                                                                                                                          |
| Version    | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:2024-05-23。                                                                                                                                                                        |
| Region     | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),详见产品支持的 [地域列表](https://cloud.tencent.com/document/api/1616/107789#.E5.9C.B0.E5.9F.9F.E5.88.97.E8.A1.A8)。                                                                                 |
| Template   | 是   | String                                                                      | 特效模板名称。请在 [视频特效模板列表](https://cloud.tencent.com/document/product/1616/119194) 中选择想要生成的特效对应的 template 名称。<br>示例值:hug                                                              
...[truncated 24 chars]

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/SubmitTemplateToVideoJob.md (reported line 17)May include surrounding context.

md
| 参数名称       | 必选  | 类型                                                                          | 描述                                                                                                                                                                                                                                                  |
| ---------- | --- | --------------------------------------------------------------------------- | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Action     | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:SubmitTemplateToVideoJob。                                                                                                                                                          |
| Version    | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:2024-05-23。                                                                                                                                                                        |
| Region     | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),详见产品支持的 [地域列表](https://cloud.tencent.com/document/api/1616/107789#.E5.9C.B0.E5.9F.9F.E5.88.97.E8.A1.A8)。                                                                                 |
| Template   | 是   | String                                                                      | 特效模板名称。请在 [视频特效模板列表](https://cloud.tencent.com/document/product/1616/119194) 中选择想要生成的特效对应的 template 名称。<br>示例值:hug                                                              
...[truncated 25 chars]

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/SubmitTemplateToVideoJob.md (reported line 18)May include surrounding context.

md
| ---------- | --- | --------------------------------------------------------------------------- | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Action     | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:SubmitTemplateToVideoJob。                                                                                                                                                          |
| Version    | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:2024-05-23。                                                                                                                                                                        |
| Region     | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),详见产品支持的 [地域列表](https://cloud.tencent.com/document/api/1616/107789#.E5.9C.B0.E5.9F.9F.E5.88.97.E8.A1.A8)。                                                                                 |
| Template   | 是   | String                                                                      | 特效模板名称。请在 [视频特效模板列表](https://cloud.tencent.com/document/product/1616/119194) 中选择想要生成的特效对应的 template 名称。<br>示例值:hug                                                                                                                                  |
| Images.N   | 是   | Array of [Image](https://cloud.tencent.com/document/api/1616/107808#Image)  | 参考图像,不同特效输入图片的数量详见: [视频特效模板-图片要求说明](https://cloud.tencent.com/document/product/1616/119194)<br>- 支持传入图片Base64编码或图片URL(确保可访问)<br>- 图片格式:支持png、jpg、jpeg、webp、bmp、tiff<br>- 图片文件:大小
...[truncated 25 chars]

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/SubmitTemplateToVideoJob.md (reported line 19)May include surrounding context.

md
| Action     | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:SubmitTemplateToVideoJob。                                                                                                                                                          |
| Version    | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),本接口取值:2024-05-23。                                                                                                                                                                        |
| Region     | 是   | String                                                                      | [公共参数](https://cloud.tencent.com/document/api/1616/107789),详见产品支持的 [地域列表](https://cloud.tencent.com/document/api/1616/107789#.E5.9C.B0.E5.9F.9F.E5.88.97.E8.A1.A8)。                                                                                 |
| Template   | 是   | String                                                                      | 特效模板名称。请在 [视频特效模板列表](https://cloud.tencent.com/document/product/1616/119194) 中选择想要生成的特效对应的 template 名称。<br>示例值:hug                                                                                                                                  |
| Images.N   | 是   | Array of [Image](https://cloud.tencent.com/document/api/1616/107808#Image)  | 参考图像,不同特效输入图片的数量详见: [视频特效模板-图片要求说明](https://cloud.tencent.com/document/product/1616/119194)<br>- 支持传入图片Base64编码或图片URL(确保可访问)<br>- 图片格式:支持png、jpg、jpeg、webp、bmp、tiff<br>- 图片文件:大小不能超过10MB(base64后),图片分辨率不小于300*300px,不大于4096*4096,图片宽高比应在1:4 ~ 4:1之间 |
| LogoAdd    | 否   | Integer                                                                     | 为生成视频添加标识的开关,默认为1。传0 需前往 [控制台](https://console.cloud.tencent.com/vtc/setting) 申请开启显式标识自主完成后方可生效。<br>1:添加标识;<br>0:不添加标识;<br>其他数值:默认按1处理。<br>建议您使用显著标识来提示,该视频是 AI 生成的视频。<br>示例值:1 
...[truncated 25 chars]

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/SubmitTemplateToVideoJob.md (reported line 22)May include surrounding context.

md
| Template   | 是   | String                                                                      | 特效模板名称。请在 [视频特效模板列表](https://cloud.tencent.com/document/product/1616/119194) 中选择想要生成的特效对应的 template 名称。<br>示例值:hug                                                                                                                                  |
| Images.N   | 是   | Array of [Image](https://cloud.tencent.com/document/api/1616/107808#Image)  | 参考图像,不同特效输入图片的数量详见: [视频特效模板-图片要求说明](https://cloud.tencent.com/document/product/1616/119194)<br>- 支持传入图片Base64编码或图片URL(确保可访问)<br>- 图片格式:支持png、jpg、jpeg、webp、bmp、tiff<br>- 图片文件:大小不能超过10MB(base64后),图片分辨率不小于300*300px,不大于4096*4096,图片宽高比应在1:4 ~ 4:1之间 |
| LogoAdd    | 否   | Integer                                                                     | 为生成视频添加标识的开关,默认为1。传0 需前往 [控制台](https://console.cloud.tencent.com/vtc/setting) 申请开启显式标识自主完成后方可生效。<br>1:添加标识;<br>0:不添加标识;<br>其他数值:默认按1处理。<br>建议您使用显著标识来提示,该视频是 AI 生成的视频。<br>示例值:1                                                                     |
| LogoParam  | 否   | [LogoParam](https://cloud.tencent.com/document/api/1616/107808#LogoParam)   | 标识内容设置。<br>默认在生成视频的右下角添加“ AI 生成”或“视频由 AI 生成”字样,如需替换为其他的标识图片,需前往 [控制台](https://console.cloud.tencent.com/vtc/setting) 申请开启显式标识自主完成。<br>                                                                                                              |
| Resolution | 否   | String                                                                      | 视频输出分辨率,默认值:360p 。不同特效支持的清晰度及消耗积分数详见:[视频特效模板-单次调用消耗积分数列](https://cloud.tencent.com/document/product/1616/119194)<br>示例值:360p                                                                                                                        |
| BGM        | 否   | Boolean                                                                     | 是否为生成的视频添加背景音乐。默认:false, 传 true 时系统将从预设 BGM 库中自动挑选合适的音乐并添加;不传或为 false 则不添加 BGM。<br>示例值:false                                                                                    
...[truncated 25 chars]

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/SubmitTemplateToVideoJob.md (reported line 23)May include surrounding context.

md
| Images.N   | 是   | Array of [Image](https://cloud.tencent.com/document/api/1616/107808#Image)  | 参考图像,不同特效输入图片的数量详见: [视频特效模板-图片要求说明](https://cloud.tencent.com/document/product/1616/119194)<br>- 支持传入图片Base64编码或图片URL(确保可访问)<br>- 图片格式:支持png、jpg、jpeg、webp、bmp、tiff<br>- 图片文件:大小不能超过10MB(base64后),图片分辨率不小于300*300px,不大于4096*4096,图片宽高比应在1:4 ~ 4:1之间 |
| LogoAdd    | 否   | Integer                                                                     | 为生成视频添加标识的开关,默认为1。传0 需前往 [控制台](https://console.cloud.tencent.com/vtc/setting) 申请开启显式标识自主完成后方可生效。<br>1:添加标识;<br>0:不添加标识;<br>其他数值:默认按1处理。<br>建议您使用显著标识来提示,该视频是 AI 生成的视频。<br>示例值:1                                                                     |
| LogoParam  | 否   | [LogoParam](https://cloud.tencent.com/document/api/1616/107808#LogoParam)   | 标识内容设置。<br>默认在生成视频的右下角添加“ AI 生成”或“视频由 AI 生成”字样,如需替换为其他的标识图片,需前往 [控制台](https://console.cloud.tencent.com/vtc/setting) 申请开启显式标识自主完成。<br>                                                                                                              |
| Resolution | 否   | String                                                                      | 视频输出分辨率,默认值:360p 。不同特效支持的清晰度及消耗积分数详见:[视频特效模板-单次调用消耗积分数列](https://cloud.tencent.com/document/product/1616/119194)<br>示例值:360p                                                                                                                        |
| BGM        | 否   | Boolean                                                                     | 是否为生成的视频添加背景音乐。默认:false, 传 true 时系统将从预设 BGM 库中自动挑选合适的音乐并添加;不传或为 false 则不添加 BGM。<br>示例值:false                                                                                                                                                        |
| ExtraParam | 否   | [ExtraParam](https://cloud.tencent.com/document/api/1616/107808#ExtraParam) | 扩展字段。                                                                                                                                                                           
...[truncated 24 chars]

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/SubmitTemplateToVideoJob.md (reported line 24)May include surrounding context.

md
| LogoAdd    | 否   | Integer                                                                     | 为生成视频添加标识的开关,默认为1。传0 需前往 [控制台](https://console.cloud.tencent.com/vtc/setting) 申请开启显式标识自主完成后方可生效。<br>1:添加标识;<br>0:不添加标识;<br>其他数值:默认按1处理。<br>建议您使用显著标识来提示,该视频是 AI 生成的视频。<br>示例值:1                                                                     |
| LogoParam  | 否   | [LogoParam](https://cloud.tencent.com/document/api/1616/107808#LogoParam)   | 标识内容设置。<br>默认在生成视频的右下角添加“ AI 生成”或“视频由 AI 生成”字样,如需替换为其他的标识图片,需前往 [控制台](https://console.cloud.tencent.com/vtc/setting) 申请开启显式标识自主完成。<br>                                                                                                              |
| Resolution | 否   | String                                                                      | 视频输出分辨率,默认值:360p 。不同特效支持的清晰度及消耗积分数详见:[视频特效模板-单次调用消耗积分数列](https://cloud.tencent.com/document/product/1616/119194)<br>示例值:360p                                                                                                                        |
| BGM        | 否   | Boolean                                                                     | 是否为生成的视频添加背景音乐。默认:false, 传 true 时系统将从预设 BGM 库中自动挑选合适的音乐并添加;不传或为 false 则不添加 BGM。<br>示例值:false                                                                                                                                                        |
| ExtraParam | 否   | [ExtraParam](https://cloud.tencent.com/document/api/1616/107808#ExtraParam) | 扩展字段。                                                                                                                                                                                                                                               |

## 输出参数

Whitespace Padding

Medium
Category
Prompt Injection
Confidence
70% confidence
Finding

Large whitespace padding was detected (a block of blank lines or a long run of spaces). This can push injected instructions below or to the right of the visible area so a human reviewer never sees them while the agent still reads them. Manual review of the hidden content is recommended.

Content

Scanner excerpt · references/SubmitTemplateToVideoJob.md (reported line 25)May include surrounding context.

md
| LogoParam  | 否   | [LogoParam](https://cloud.tencent.com/document/api/1616/107808#LogoParam)   | 标识内容设置。<br>默认在生成视频的右下角添加“ AI 生成”或“视频由 AI 生成”字样,如需替换为其他的标识图片,需前往 [控制台](https://console.cloud.tencent.com/vtc/setting) 申请开启显式标识自主完成。<br>                                                                                                              |
| Resolution | 否   | String                                                                      | 视频输出分辨率,默认值:360p 。不同特效支持的清晰度及消耗积分数详见:[视频特效模板-单次调用消耗积分数列](https://cloud.tencent.com/document/product/1616/119194)<br>示例值:360p                                                                                                                        |
| BGM        | 否   | Boolean                                                                     | 是否为生成的视频添加背景音乐。默认:false, 传 true 时系统将从预设 BGM 库中自动挑选合适的音乐并添加;不传或为 false 则不添加 BGM。<br>示例值:false                                                                                                                                                        |
| ExtraParam | 否   | [ExtraParam](https://cloud.tencent.com/document/api/1616/107808#ExtraParam) | 扩展字段。                                                                                                                                                                                                                                               |

## 输出参数

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
95% confidence
Finding

This file contains user-facing natural-language content such as the module description, error/help text, and argument descriptions in Chinese only. That can violate a language/locale policy when the skill does not provide user opt-in, alternative locale support, or a justification that it is restricted to a Chinese-speaking context.

Content

No source excerpt is available for this finding.

Context-Inappropriate Capability

Medium
Category
Not specified by scanner
Confidence
97% confidence
Finding

The skill installs a Python package dynamically during execution even though that capability is not essential to processing video effects itself. This creates a supply-chain execution path: compromise of package indexes, dependency confusion, or a malicious package update could lead to code execution in the host environment. The skill’s purpose does not justify this behavior, so the context increases suspicion rather than reducing it.

Content

No source excerpt is available for this finding.

subprocess module call

Medium
Category
Dangerous Code Execution
Confidence
92% confidence
Finding

The script automatically invokes pip at runtime to install a package whenever the import fails. Runtime package installation expands the trusted computing base, introduces supply-chain risk, and allows execution of arbitrary setup/install-time code from the fetched package in the current environment. In a skill context, this is more dangerous because the install happens implicitly before the main logic, without operator review or dependency pinning.

Content

Scanner excerpt · scripts/main.py (reported line 20)May include surrounding context.

python
import tencentcloud  # noqa: F401
    except ImportError:
        print("[INFO] tencentcloud-sdk-python not found. Installing...", file=sys.stderr)
        subprocess.check_call(
            [sys.executable, "-m", "pip", "install", "tencentcloud-sdk-python", "-q"],
            stdout=sys.stderr,
            stderr=sys.stderr,

Natural-Language Policy Violations

Low
Category
Not specified by scanner
Confidence
80% confidence
Finding

The skill description and operational instructions are entirely in Chinese, and there is no indication that the skill is intended only for a Chinese-speaking or region-specific audience. This can create a language-policy issue if the agent is expected to adapt to the user's preferred language unless a locale restriction is explicitly justified.

Content

No source excerpt is available for this finding.

Intent-Code Divergence

Low
Category
Not specified by scanner
Confidence
80% confidence
Finding

The SKILL.md explicitly instructs agents to avoid manually installing dependencies because '脚本内部自动处理' and later states '脚本会自动安装'. In this file, however, there is no code at all—only documentation—so the stated implementation behavior is unsupported by the actual content provided, creating a documentation-to-artifact mismatch.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Low
Category
Not specified by scanner
Confidence
79% confidence
Finding

该文件整体以中文撰写,标题即表明文档默认使用中文,但未说明这是面向特定区域用户的限定文档,也未提供其他语言选择。根据规则,若技能内容强制特定语言且没有用户选择或明确合理的区域性说明,可视为自然语言政策风险。

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Low
Category
Not specified by scanner
Confidence
95% confidence
Finding

This markdown file contains user-facing natural language only in Chinese, and does not indicate that other languages are available or that Chinese is a justified locale restriction. Under the language/locale policy rule, forcing a single language without user opt-in is a policy concern.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.