hunt-mfa-bypass
Pass
Audited by Gen Agent Trust Hub on Aug 24, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill includes command-line examples using
curlandffuffor testing web endpoints. These are standard security auditing tools and the examples use placeholder URLs (e.g.,target.com). - [REMOTE_CODE_EXECUTION]: Provides a Python script template using
asyncioandaiohttpto demonstrate testing for race conditions in MFA verification. The script is static, instructional, and does not involve downloading or executing code from untrusted sources. - [PROMPT_INJECTION]: No evidence of instructions designed to bypass agent safety filters or override system prompts was found. The instructions are focused on guiding the agent through security testing methodologies.
Audit Metadata