agent-tools
Run inference.sh AI Apps
Agents need one interface for many hosted AI models and media workflows. This skill teaches Claude, Codex, and Claude Code to use the infsh CLI safely.
Do not auto-install this skill.
The canonical policy requires operator review before any installation action.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "agent-tools" from https://skillstore.io/skills/inferencesh-agent-tools.md and its manifest at https://skillstore.io/api/skills/inferencesh-agent-tools/manifest. Verify the artifact. Do not auto-install. Inspect the skill and report your findings, then wait for an operator or manual installation decision.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "agent-tools". Find a fast video model for a short product clip.
Expected outcome:
The assistant lists relevant video apps, explains speed and quality tradeoffs, and recommends generating sample input first.
Using "agent-tools". Run an image generation task and save the result.
Expected outcome:
The assistant selects an image app, prepares input, runs the task, reports completion, and points to the saved media result.
Using "agent-tools". Troubleshoot an invalid input error.
Expected outcome:
- The assistant checks the app schema.
- It identifies missing fields.
- It suggests corrected input values.
Security Audit
CriticalReview confirmed multiple remote installer commands that pipe downloaded content directly into a shell, which is a critical supply-chain risk. Most API key, hidden file, documentation link, and system reconnaissance matches are benign reference material. The skill still carries elevated risk because it grants broad infsh command access and includes account-changing cloud and X/Twitter actions.
Confirmed security concerns (7)
Capability review items (16)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
๐ Network access (14)
๐ Env variables (3)
๐ Filesystem access (2)
Detected Patterns
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/inferencesh-agent-tools/audits/4?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/inferencesh-agent-tools?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/inferencesh-agent-tools?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/inferencesh-agent-tools/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/inferencesh-agent-tools.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA ยท BibTeX ยท CFF)
APA citation
inferencesh. (2026). agent-tools security audit report (audit version 4) [Author version unspecified]. Skillstore. https://skillstore.io/skills/inferencesh-agent-tools/audits/4BibTeX citation
@techreport{inferencesh-inferencesh-agent-tools-2026,
author = {inferencesh},
title = {agent-tools security audit report (audit version 4)},
institution = {Skillstore},
year = {2026},
number = {4},
url = {https://skillstore.io/skills/inferencesh-agent-tools/audits/4},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "agent-tools security audit report (audit version 4)"
version: "unspecified"
type: report
authors:
- name: "inferencesh"
date-released: "2026-07-05"
url: "https://skillstore.io/skills/inferencesh-agent-tools/audits/4"
identifiers:
- type: other
value: "skillstore:inferencesh-agent-tools:audit:4"
description: "Skillstore immutable audit report identifier"
Compare variants
20 installable variantsEach author remains a separate installable skill. The recommended variant is ranked by Skillstore evidence.
Why this variant is first
tul-sh-agent-tools
2026-08-21
toolshell-agent-tools
2026-08-21
inferen-sh-agent-tools
2026-08-21
tool-belt-agent-tools
2026-08-21
inferencesh-agent-tools
2026-08-21
inference-sh-skills-agent-tools
2026-08-21
inference-sh-7-agent-tools
2026-08-21
inf-sh-agent-tools
2026-08-21
inference-skills-agent-tools
2026-08-21
skillssh-agent-tools
2026-08-21
inference-sh-9-agent-tools
2026-08-21
inference-sh-3-agent-tools
2026-08-21
qu-skills-agent-tools
2026-08-21
infsh-skills-agent-tools
2026-08-21
inference-sh-6-agent-tools
2026-08-21
inference-sh-0-agent-tools
2026-08-21
inference-shell-agent-tools
2026-08-21
inference-sh-8-agent-tools
2026-08-21
101-skills-agent-tools
2026-08-21
halt-catch-fire-agent-tools
2026-08-21
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
Prototype Media Generation
Find image, video, audio, or 3D apps and run fast test jobs from the command line.
Compare Hosted AI Models
Discover LLM, search, and media apps, inspect schemas, and compare results across providers.
Operate Account Workflows
Use authenticated CLI commands for app runs, task tracking, deployment checks, and optional X/Twitter workflows.
Try These Prompts
Find inference.sh apps for image generation. List strong options and explain what each one is best for before running anything.
Inspect the app google/veo-3-1-fast and create a sample input file. Explain which fields I should edit.
Run an image generation task with my prompt, track it until completion, and summarize the returned media result.
Find a text-to-image app, prepare a prompt from my product brief, run the task, then collect supporting references with a search app. Ask before paid or publishing actions.
Best Practices
- Review remote installation commands before execution.
- Use sample input and app details before running paid tasks.
- Confirm X/Twitter, deployment, or credential-related actions with the account owner.
Avoid
- Do not pipe remote installers to a shell without verification.
- Do not run publishing or account actions without explicit approval.
- Do not place real API keys in prompts, logs, or shared files.
Frequently Asked Questions
What does this skill do?
Which tools can use it?
Does it require an account?
Can it generate images or videos?
Can it post to X or Twitter?
What is the main security concern?
Developer Details
Author
inferenceshLicense
MIT
Skillstore revision
r1
Version notice
The author did not declare a version.
Ref
a25199bc7d6b82598536822d1738eb5d5f54025b
Maintenance freshness
7/18/2026
Usage
8 downloads ยท 201 views
File structure
๐ references/
๐ app-discovery.md
๐ authentication.md
๐ cli-reference.md
๐ running-apps.md
๐ SKILL.md