network-technique

Pass

Audited by Gen Agent Trust Hub on Sep 5, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill involves the processing of external, untrusted data sources including live network traffic, PCAP files, and protocol logs which could contain malicious instructions designed to subvert the agent's logic.
  • Ingestion points: Network logs, packet captures, and scan results are identified as primary evidence sources in SKILL.md and references/triage-and-flow.md.
  • Boundary markers: The methodology defines scoping and objectives but does not specify robust input delimiters or instruction-bypass warnings for the ingested telemetry.
  • Capability inventory: The skill utilizes powerful tools such as nmap, responder, crackmapexec, and netcat which provide significant system and network access as described in SKILL.md.
  • Sanitization: There are no explicit instructions for sanitizing or escaping content extracted from network payloads before agent processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 5, 2026, 10:40 PM
Security Audit — agent-trust-hub — network-technique