poc-weaponization

Pass

Audited by Gen Agent Trust Hub on Sep 21, 2026

Risk Level: SAFEOBFUSCATIONCOMMAND_EXECUTIONDATA_EXFILTRATIONINDIRECT_PROMPT_INJECTIONREMOTE_CODE_EXECUTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted external code (PoCs) from public repositories. Ingestion points: SKILL.md workflow for evaluating public PoCs. Boundary markers: Explicit instructions to use isolated environments and perform safety audits. Capability inventory: Translation and modernization of code snippets. Sanitization: Manual review and replacement of shellcode with parameterized payloads.
  • [OBFUSCATION]: The references/backdoor-patterns.md file contains examples of Base64-encoded execution patterns used by malicious actors.
  • [DATA_EXFILTRATION]: Educational examples in references/backdoor-patterns.md demonstrate how sensitive files like SSH keys can be accessed and sent to external domains.
  • [COMMAND_EXECUTION]: The documentation provides examples of shell commands and reverse shell patterns as part of its 'Fake PoC' indicator list.
  • [REMOTE_CODE_EXECUTION]: The skill documentation includes examples of remote script execution (curl to bash) as indicators of malicious proof-of-concepts.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 21, 2026, 02:21 PM
Security Audit — agent-trust-hub — poc-weaponization