known-problem-hint-research

Pass

Audited by Gen Agent Trust Hub on Sep 21, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The references/exploit-hint-recipes.md file provides specific command-line templates for the searchsploit utility (e.g., searchsploit --cve {YYYY-NNNN}, searchsploit -w {product} {version}).
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and process data from a wide variety of untrusted external web sources (technical blogs, GitHub, research papers, exploit databases) to find technical solutions.
  • Ingestion points: Data enters the agent context through fetch_content, Tavily, and Jina Reader/Search endpoints as described in SKILL.md and references/source-filters.md.
  • Boundary markers: The skill includes explicit "Quality rules" in SKILL.md that instruct the agent to "Separate 'source says' from 'agent infers'" and "Do not outsource reasoning."
  • Capability inventory: The skill leverages web search tools, content fetchers, and command-line utilities for searching exploit databases.
  • Sanitization: The instructions in references/exploit-hint-recipes.md advise manual review of external code ("Read before running, isolate the environment") and prioritize extracting logic over executing untrusted code.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 21, 2026, 02:20 PM
Security Audit — agent-trust-hub — known-problem-hint-research