Back to skill

Security audit

AI大模型专家|Koyal替代与迁移|AI-HIVE MCP

Security checks for vulnerabilities and agentic risk

Overview

This skill is a disclosed workflow guide for evaluating a Koyal-to-AI-HIVE migration, with external media generation steps bounded by authorization checks and human approval.

Before installing, users should understand that this skill may guide an agent to send approved media assets to AI-HIVE MCP and incur generation costs. Use it with authorized assets only, confirm current platform capabilities and pricing, and keep the required human approval gates before uploads, paid tasks, publishing, or migration decisions.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.