agent-tools
Run Cloud AI Apps with inference.sh
Teams need a consistent way to discover and run hosted AI apps from agent workflows. This skill gives Claude, Codex, and Claude Code practical infsh CLI guidance for discovery, execution, tasks, and authentication.
Do not auto-install this skill.
The canonical policy requires operator review before any installation action.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "agent-tools" from https://skillstore.io/skills/inf-sh-agent-tools.md and its manifest at https://skillstore.io/api/skills/inf-sh-agent-tools/manifest. Verify the artifact. Do not auto-install. Inspect the skill and report your findings, then wait for an operator or manual installation decision.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "agent-tools". Find an image generation option for a product mockup.
Expected outcome:
The assistant lists relevant apps, recommends one candidate, and explains the required prompt fields before execution.
Using "agent-tools". Run a video generation job and check it later.
Expected outcome:
The assistant asks for approval, submits the task, records the task identifier, and describes how to retrieve results.
Using "agent-tools". Choose a hosted search app for research.
Expected outcome:
The assistant compares catalog matches, notes data-sharing concerns, and suggests the app detail command to confirm inputs.
Security Audit
CriticalThe skill is legitimate CLI documentation for inference.sh, but it includes confirmed remote shell installer instructions and many external infsh commands. Most hardcoded documentation links and API-key mentions are false positives, while cloud execution and Twitter/X automation remain meaningful operational risks. No prompt injection text was found in the reviewed files.
Confirmed security concerns (6)
Capability review items (16)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
๐ Network access (14)
๐ Env variables (3)
๐ Filesystem access (2)
Detected Patterns
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/inf-sh-agent-tools/audits/4?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/inf-sh-agent-tools?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/inf-sh-agent-tools?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/inf-sh-agent-tools/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/inf-sh-agent-tools.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA ยท BibTeX ยท CFF)
APA citation
inf-sh. (2026). agent-tools security audit report (audit version 4) [Author version unspecified]. Skillstore. https://skillstore.io/skills/inf-sh-agent-tools/audits/4BibTeX citation
@techreport{inf-sh-inf-sh-agent-tools-2026,
author = {inf-sh},
title = {agent-tools security audit report (audit version 4)},
institution = {Skillstore},
year = {2026},
number = {4},
url = {https://skillstore.io/skills/inf-sh-agent-tools/audits/4},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "agent-tools security audit report (audit version 4)"
version: "unspecified"
type: report
authors:
- name: "inf-sh"
date-released: "2026-07-05"
url: "https://skillstore.io/skills/inf-sh-agent-tools/audits/4"
identifiers:
- type: other
value: "skillstore:inf-sh-agent-tools:audit:4"
description: "Skillstore immutable audit report identifier"
Compare variants
20 installable variantsEach author remains a separate installable skill. The recommended variant is ranked by Skillstore evidence.
Why this variant is first
tul-sh-agent-tools
2026-08-21
toolshell-agent-tools
2026-08-21
inferen-sh-agent-tools
2026-08-21
tool-belt-agent-tools
2026-08-21
inferencesh-agent-tools
2026-08-21
inference-sh-skills-agent-tools
2026-08-21
inference-sh-7-agent-tools
2026-08-21
inf-sh-agent-tools
2026-08-21
inference-skills-agent-tools
2026-08-21
inference-sh-9-agent-tools
2026-08-21
inference-sh-3-agent-tools
2026-08-21
skillssh-agent-tools
2026-08-21
infsh-skills-agent-tools
2026-08-21
inference-sh-0-agent-tools
2026-08-21
qu-skills-agent-tools
2026-08-21
inference-sh-6-agent-tools
2026-08-21
inference-shell-agent-tools
2026-08-21
101-skills-agent-tools
2026-08-21
inference-sh-8-agent-tools
2026-08-21
halt-catch-fire-agent-tools
2026-08-21
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
Run model experiments from the terminal
Use infsh commands to find apps, prepare input, run jobs, and collect results for model testing.
Create media assets with hosted generators
Discover image, video, audio, and 3D apps, then run generation jobs without managing GPUs.
Compare search and LLM providers
Use catalog search and app details to select hosted search or LLM tools for a workflow.
Try These Prompts
Use the inference.sh skill to find apps for image generation. Show the safest discovery steps before running anything.
Help me prepare an infsh run for a video generation app. Generate the sample input first and explain what I must review.
Submit a long-running inference.sh app only after my approval. Then show how to check task status and save the result.
Compare available LLM and search apps for my workflow. Include authentication needs, data-sharing risks, costs to verify, and recommended commands.
Best Practices
- Confirm the app name, provider, input data, and expected cost before running remote work.
- Use sample input files and review them before submitting prompts or files.
- Require explicit approval before installation, related-skill setup, or Twitter/X actions.
Avoid
- Do not pipe remote installer scripts into a shell without verification.
- Do not paste secrets, private files, or regulated data into remote app inputs without approval.
- Do not automate posts, messages, follows, likes, or reposts without final human review.
Frequently Asked Questions
What does this skill help me do?
Does it require an account?
Can it run image and video models?
Can it post to Twitter or X?
Is my data sent to remote services?
What should I verify before installing the CLI?
Developer Details
Author
inf-shLicense
MIT
Skillstore revision
r1
Version notice
The author did not declare a version.
Ref
30c73eac2afe762f6aa9c4553158769369d47351
Maintenance freshness
7/18/2026
Usage
6 downloads ยท 260 views
File structure
๐ references/
๐ app-discovery.md
๐ authentication.md
๐ cli-reference.md
๐ running-apps.md
๐ SKILL.md