termux-network

Pass

Audited by Gen Agent Trust Hub on Oct 4, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses a shell script (scripts/check-network.sh) to collect environment data. The script uses standard utilities such as date, awk, and curl to verify system configuration and network reachability without performing destructive actions.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: The script includes logic to detect the presence of proxy-related environment variables (e.g., http_proxy). It is designed to only report the names of the variables that are set, explicitly avoiding printing their values to prevent the exposure of embedded credentials or tokens.
  • [INDIRECT_PROMPT_INJECTION]: When performing a network probe, the script accepts a hostname as an argument. It implements a strict character whitelist to validate the hostname, effectively preventing command injection or other exploitation attempts through malformed input.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 4, 2026, 09:05 AM
Security Audit — agent-trust-hub — termux-network