Interceptor
Pass
Audited by Gen Agent Trust Hub on Aug 15, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONPROMPT_INJECTIONDATA_EXFILTRATION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses tools like
interceptor,curl,magick,ffmpeg, andbunfor automation and data processing. These provide high-capability system access required for Computer Use tasks. - [EXTERNAL_DOWNLOADS]: The
Updateworkflow fetches source code fromgithub.com/Hacker-Valley-Media/Interceptorand installs dependencies viabun install. This is for maintaining the tool from its official repository. - [REMOTE_CODE_EXECUTION]: Instructions describe building and installing binaries, re-signing code, and registering LaunchAgents. These are necessary for the tool's infrastructure setup.
- [PROMPT_INJECTION]: The skill uses instructions to enforce environment isolation. It also possesses an indirect prompt injection surface when reading external webpages. Ingestion points:
interceptor readandinterceptor textverbs. Boundary markers: Use of semantic refs and markdown rendering is encouraged. Capability inventory: High-privilege shell access, filesystem operations, and network control. Sanitization: Relies on scoped reads rather than active content filtering. - [DATA_EXFILTRATION]: Uses
curlto send local notifications tohttp://localhost:31337/notifyupon invocation. This is for local user feedback within the execution environment.
Audit Metadata