heap-exploitation-dev
Pass
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill facilitates the processing of technical vulnerability data by guiding the agent through the analysis of user-provided heap bug primitives (e.g., overflows, UAF, double-free) without explicit boundary markers or input validation instructions. This risk is inherent to the primary purpose of a security analysis tool.
- Ingestion points: The agent ingests external data when a user provides technical details regarding heap-managed object bugs in the classification and activation sections of the instructions.
- Boundary markers: No specific delimiters or "ignore embedded instructions" warnings are defined for the agent to use when processing technical descriptions.
- Capability inventory: The skill enables significant offensive capabilities including heap shaping, arbitrary memory writes, and control-flow hijacking (FSOP, ROP, Apple 2/3 endgames).
- Sanitization: The instructions lack specific routines for sanitizing or escaping technical input before it is used to develop exploitation strategies.
- [NO_CODE]: The skill consists entirely of instructional markdown files and reference materials; it does not distribute or execute scripts, binaries, or automated code snippets.
Audit Metadata