auth-bypass
Pass
Audited by Gen Agent Trust Hub on May 12, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns detected. The skill acts as a documentation and methodology resource for security professionals performing manual or semi-automated audits.
- [REMOTE_CODE_EXECUTION]: While the skill contains Python code for generating forged JWT tokens in
references/poc-skeleton.md, these are static code snippets intended for a security auditor to use as templates for Proof-of-Concept testing, rather than instructions that execute remote code or download untrusted scripts autonomously. - [COMMAND_EXECUTION]: The skill provides numerous
grepcommand patterns inSKILL.mdto help users map routes and middleware in source code. These are standard development and auditing tools used for static analysis and do not pose a risk of arbitrary command injection.
Audit Metadata