termux-network
Pass
Audited by Gen Agent Trust Hub on Oct 4, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses a shell script (
scripts/check-network.sh) to collect environment data. The script uses standard utilities such asdate,awk, andcurlto verify system configuration and network reachability without performing destructive actions. - [DATA_EXPOSURE_AND_EXFILTRATION]: The script includes logic to detect the presence of proxy-related environment variables (e.g.,
http_proxy). It is designed to only report the names of the variables that are set, explicitly avoiding printing their values to prevent the exposure of embedded credentials or tokens. - [INDIRECT_PROMPT_INJECTION]: When performing a network probe, the script accepts a hostname as an argument. It implements a strict character whitelist to validate the hostname, effectively preventing command injection or other exploitation attempts through malformed input.
Audit Metadata