seccomp-tools

Pass

Audited by Gen Agent Trust Hub on Sep 5, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides commands for executing seccomp-tools to dump and analyze process filters. These are standard security research actions that involve interacting with binary execution and process identifiers.
  • [INDIRECT_PROMPT_INJECTION]: The skill facilitates the ingestion and disassembly of binary BPF (Berkeley Packet Filter) data. This creates a surface where maliciously crafted filters or binary metadata could attempt to influence the agent's interpretation of the security policy.
  • Ingestion points: Data enters the agent context through the output of seccomp-tools dump and seccomp-tools disasm in SKILL.md workflows.
  • Boundary markers: The skill does not define specific delimiters or instructions to ignore potential commands embedded within disassembled BPF logic.
  • Capability inventory: The skill utilizes shell command execution to run the seccomp-tools suite.
  • Sanitization: There is no evidence of sanitization or validation of the disassembled output before it is presented to the agent for analysis.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 5, 2026, 10:40 PM
Security Audit — agent-trust-hub — seccomp-tools