mysql-service-manager

Fail

Audited by Gen Agent Trust Hub on Apr 25, 2026

Risk Level: HIGHCOMMAND_EXECUTIONREMOTE_CODE_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: All service management and diagnostic commands (brew, mysqladmin, lsof, cat) are wrapped with an undocumented and unverifiable binary called 'rtk', which could intercept or modify instructions sent to the system.\n- [COMMAND_EXECUTION]: The skill instructs the modification of shell startup files (~/.zshrc, ~/.bash_profile) to create persistent aliases for the unknown 'rtk' tool, establishing long-term exposure and ensuring the wrapper is used in all future sessions.\n- [REMOTE_CODE_EXECUTION]: The prerequisite 'RTK' functions as an unverifiable third-party dependency with execution privileges over critical database and system services. The name 'Rust Token Killer' and its claimed purpose of 'token optimization' for MySQL are suspicious and lack technical justification.\n- [PROMPT_INJECTION]: The skill processes output from system commands that could be influenced by external environment factors. Ingestion points: brew list, lsof, and cat command outputs; Boundary markers: absent; Capability inventory: service management and file system access; Sanitization: absent.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Apr 25, 2026, 12:08 PM
Security Audit — agent-trust-hub — mysql-service-manager