hunt-ssti
Pass
Audited by Gen Agent Trust Hub on Aug 24, 2026
Risk Level: SAFECOMMAND_EXECUTIONREMOTE_CODE_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides various payloads that utilize shell commands (e.g.,
id) to confirm command execution on target systems during security audits. - [REMOTE_CODE_EXECUTION]: Detailed instructions are provided for escalating template injection vulnerabilities into remote code execution on target servers across multiple platforms (Python, PHP, Ruby, Java).
- [SAFE_PRACTICE]: The instructions advise the use of proof-of-concept commands (like
id) to validate vulnerabilities rather than destructive actions.
Audit Metadata