poc-weaponization
Pass
Audited by Gen Agent Trust Hub on Sep 21, 2026
Risk Level: SAFEOBFUSCATIONCOMMAND_EXECUTIONDATA_EXFILTRATIONINDIRECT_PROMPT_INJECTIONREMOTE_CODE_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted external code (PoCs) from public repositories. Ingestion points:
SKILL.mdworkflow for evaluating public PoCs. Boundary markers: Explicit instructions to use isolated environments and perform safety audits. Capability inventory: Translation and modernization of code snippets. Sanitization: Manual review and replacement of shellcode with parameterized payloads. - [OBFUSCATION]: The
references/backdoor-patterns.mdfile contains examples of Base64-encoded execution patterns used by malicious actors. - [DATA_EXFILTRATION]: Educational examples in
references/backdoor-patterns.mddemonstrate how sensitive files like SSH keys can be accessed and sent to external domains. - [COMMAND_EXECUTION]: The documentation provides examples of shell commands and reverse shell patterns as part of its 'Fake PoC' indicator list.
- [REMOTE_CODE_EXECUTION]: The skill documentation includes examples of remote script execution (curl to bash) as indicators of malicious proof-of-concepts.
Audit Metadata