heap-exploitation-dev

Pass

Audited by Gen Agent Trust Hub on Sep 5, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill facilitates the processing of technical vulnerability data by guiding the agent through the analysis of user-provided heap bug primitives (e.g., overflows, UAF, double-free) without explicit boundary markers or input validation instructions. This risk is inherent to the primary purpose of a security analysis tool.
  • Ingestion points: The agent ingests external data when a user provides technical details regarding heap-managed object bugs in the classification and activation sections of the instructions.
  • Boundary markers: No specific delimiters or "ignore embedded instructions" warnings are defined for the agent to use when processing technical descriptions.
  • Capability inventory: The skill enables significant offensive capabilities including heap shaping, arbitrary memory writes, and control-flow hijacking (FSOP, ROP, Apple 2/3 endgames).
  • Sanitization: The instructions lack specific routines for sanitizing or escaping technical input before it is used to develop exploitation strategies.
  • [NO_CODE]: The skill consists entirely of instructional markdown files and reference materials; it does not distribute or execute scripts, binaries, or automated code snippets.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 5, 2026, 10:39 PM
Security Audit — agent-trust-hub — heap-exploitation-dev