hunt-http-smuggling
Pass
Audited by Gen Agent Trust Hub on Jun 13, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is an educational and instructional resource for security researchers. No malicious patterns, obfuscation, or unauthorized data access techniques were identified.
- [COMMAND_EXECUTION]: Includes a standard command for server fingerprinting using
curlto inspect HTTP response headers (curl -sI https://target/ | grep -i "Server:"). This is a common and benign diagnostic activity in security testing. - [EXTERNAL_DOWNLOADS]: Mentions third-party security research tools such as
smuggler.pyandh2csmugglerin the context of vulnerability detection. The skill does not provide commands or scripts to download or execute these tools from remote sources.
Audit Metadata