keep-codex-fast-maintenance
Warn
Audited by Gen Agent Trust Hub on May 16, 2026
Risk Level: MEDIUMEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONREMOTE_CODE_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill requires cloning a repository from an unverified GitHub account (
vibeforge1111) that is not associated with the verified author's known infrastructure. - [COMMAND_EXECUTION]: The instructions involve running Python scripts to manipulate sensitive SQLite databases and application logs located in the user's home directory (
~/.codex). - [REMOTE_CODE_EXECUTION]: Downloading and executing code from an untrusted third-party source allows the maintenance tool's logic to be updated remotely, posing a risk of system compromise or data tampering.
Audit Metadata