telegram-group-analytics-bot

Fail

Audited by Gen Agent Trust Hub on Jul 2, 2026

Risk Level: HIGHEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONREMOTE_CODE_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill directs users to download a 'release package' from an unspecified source and to clone a repository from an unknown GitHub user ('ddperso').
  • [COMMAND_EXECUTION]: The installation instructions require running 'setup.exe' as an Administrator, which provides the unverified binary with full system-level access and bypasses standard security restrictions.
  • [COMMAND_EXECUTION]: The software is distributed in a password-protected ZIP archive ('trainer2026'), which is a common tactic used to prevent antivirus and automated security scanners from inspecting the contents for malicious payloads.
  • [REMOTE_CODE_EXECUTION]: The manual setup process involves cloning and executing code from an unverified external source, which may contain malicious scripts or dependencies.
  • [COMMAND_EXECUTION]: There is a vendor mismatch; while the skill claims to be authored by 'ara.so' (Aradotso), the provided GitHub repository belongs to 'ddperso', which is not a recognized vendor resource for this author.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Jul 2, 2026, 07:02 PM
Security Audit — agent-trust-hub — telegram-group-analytics-bot