forzadesigner6-vinyl-converter

Fail

Audited by Gen Agent Trust Hub on Jun 15, 2026

Risk Level: HIGHREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [REMOTE_CODE_EXECUTION]: The instructions recommend downloading and running a pre-built binary (FD6.exe) directly from a GitHub releases page belonging to an unverified user (tokyubevoxelverse). Running unsigned executables from untrusted sources is a major security risk.
  • [COMMAND_EXECUTION]: The skill's primary functionality involves live memory injection into running game processes (e.g., ForzaHorizon6.exe). This technique involves scanning memory for fingerprints and overwriting struct data at specific offsets, which represents a highly privileged and invasive form of process manipulation.
  • [EXTERNAL_DOWNLOADS]: The installation process suggests cloning source code and installing dependencies from an unverified external repository (github.com/tokyubevoxelverse/ForzaDesigner6). Such downloads from non-trusted entities circumvent established security review processes.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Jun 15, 2026, 12:03 PM
Security Audit — agent-trust-hub — forzadesigner6-vinyl-converter