infrastructure-compliance-auditor
Pass
Audited by Gen Agent Trust Hub on Sep 19, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The script
scripts/dns_security_checker.pyexecutes system commands using thesubprocessmodule to perform DNS lookups viadigandnslookuptools. * Evidence: Functionrun_diginscripts/dns_security_checker.pyusessubprocess.runto calldigwith user-supplied domain names. * Evidence: Functionquery_txt_recordsinscripts/dns_security_checker.pyusessubprocess.runto callnslookupfor TXT record queries. * Context: The script passes arguments as a list and does not useshell=True, which prevents shell command injection. These operations are essential for the skill's purpose of auditing DNS security settings. - [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and process infrastructure configuration data from external JSON files, which could potentially contain malicious natural language instructions designed to influence the AI agent. * Ingestion points: The
infra_audit_runner.pyandaccess_control_auditor.pyscripts load data from a user-specified path using the--configflag. * Boundary markers: The scripts do not implement specific boundary markers or warnings to the AI agent to ignore natural language instructions within the processed data. * Capability inventory: The skill has the ability to read local files, execute system commands for network reconnaissance (DNS), and output audit reports that the agent will consume. * Sanitization: There is no evidence of sanitization or filtering applied to the configuration data to remove potentially manipulative content before it is included in the generated audit reports.
Audit Metadata