theharvester
Pass
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill documents standard usage of
theHarvester,amass, andholehe, which are well-known security auditing and OSINT tools. These commands are provided as examples for the user to execute. - [CREDENTIALS_UNSAFE]: The skill includes configuration templates for various OSINT service API keys (e.g., Hunter.io, Shodan). All values are represented by placeholders like
YOUR_KEYor empty strings"", following safe practice for credential management documentation. - [EXTERNAL_DOWNLOADS]: The skill includes a
pip install theHarvesterinstruction. ThetheHarvesterpackage is a well-known, legitimate OSINT tool maintained in official package registries.
Audit Metadata