mm2-analytics-roblox-tracker

Fail

Audited by Gen Agent Trust Hub on May 16, 2026

Risk Level: HIGHEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs cloning a repository from https://8015238355.github.io. This numeric-identifier URL is not an official or well-known source for gaming software.
  • [REMOTE_CODE_EXECUTION]: The instructions guide the user to git clone and then execute a script (setup.sh) from an unverified remote source.
  • [COMMAND_EXECUTION]: The documentation explicitly recommends running sudo ./setup.sh --install if permission issues occur, promoting the execution of unverified remote code with root privileges.
  • [EXTERNAL_DOWNLOADS]: The repository name murder-mystery-dupe-roblox refers to item 'duping'. In the Roblox community, such tools are major red flags for social engineering aimed at stealing account cookies and credentials.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
May 16, 2026, 08:50 PM
Security Audit — agent-trust-hub — mm2-analytics-roblox-tracker