recon-port-scan

Warn

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: MEDIUMDYNAMIC_EXECUTIONINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [DYNAMIC_EXECUTION]: The script scripts/port_scan_storage.py dynamically modifies the Python module search path using sys.path.insert with a computed path targeting a sibling directory (../../results-storage/scripts). It then imports the StorageAPI module from this location. Loading executable code from paths computed at runtime is a risk as it depends on the integrity of the local file system structure and the content of neighboring directories.
  • [INDIRECT_PROMPT_INJECTION]: The skill parses and processes data from external network scans, which represents a potential ingestion point for malicious content.
  • Ingestion points: Multiple scripts (scripts/parse_nmap_xml.py, scripts/merge_scan_results.py, and scripts/port_scan_storage.py) ingest and parse XML or JSON output generated by external tools like nmap and masscan.
  • Boundary markers: The processing logic lacks explicit delimiters or instructions to ignore potential commands embedded within scan fields such as service versions or script outputs.
  • Capability inventory: The skill is capable of executing shell commands and performing database operations via the imported StorageAPI.
  • Sanitization: There is no evidence of sanitization or validation performed on the ingested scan data before it is processed or stored.
  • [COMMAND_EXECUTION]: The skill provides extensive documentation and automation scripts for executing powerful network tools, including nmap, masscan, and rustscan. These tools allow for deep reconnaissance, including OS fingerprinting and service identification, which are critical phases in security assessments.
  • [EXTERNAL_DOWNLOADS]: The documentation in references/rustscan_guide.md describes how to fetch and install the rustscan binary from its official GitHub repository using a curl and tar pipeline. This is a standard installation procedure for the tool from a well-known service.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Sep 16, 2026, 03:47 PM
Security Audit — agent-trust-hub — recon-port-scan