crowdsec
Pass
Audited by Gen Agent Trust Hub on May 29, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [SAFE]: No malicious patterns, obfuscation, or unauthorized data exfiltration behaviors were detected. The skill's operations are transparent and aligned with its stated security management purpose.
- [COMMAND_EXECUTION]: The skill provides a wide range of commands for managing systemd services, containerized workloads, and firewall rules. This includes the necessary use of elevated privileges (sudo) for administrative tasks on host systems, which is explicitly documented for the user.
- [EXTERNAL_DOWNLOADS]: The skill references and executes installation scripts from official vendor sources, including CrowdSec's own domains, PackageCloud, and GitHub. These downloads are standard practice for the deployment and maintenance of the software and target well-known, trusted infrastructure.
- [COMMAND_EXECUTION]: The included
scripts/diagnose.shutility automates the collection of forensic and performance data for troubleshooting. It leverages the officialcscli support dumptool to provide a redacted triage report, facilitating safe and efficient problem diagnosis.
Audit Metadata