hunt-mfa-bypass

Pass

Audited by Gen Agent Trust Hub on Aug 24, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill includes command-line examples using curl and ffuf for testing web endpoints. These are standard security auditing tools and the examples use placeholder URLs (e.g., target.com).
  • [REMOTE_CODE_EXECUTION]: Provides a Python script template using asyncio and aiohttp to demonstrate testing for race conditions in MFA verification. The script is static, instructional, and does not involve downloading or executing code from untrusted sources.
  • [PROMPT_INJECTION]: No evidence of instructions designed to bypass agent safety filters or override system prompts was found. The instructions are focused on guiding the agent through security testing methodologies.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 24, 2026, 11:02 PM
Security Audit — agent-trust-hub — hunt-mfa-bypass