analyze-elf
Pass
Audited by Gen Agent Trust Hub on Aug 26, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill uses
subprocess.runto execute standard binary analysis utilities such asreadelf,nm, andstringsfrom thebinutilspackage. These are used to inspect the structure of provided ELF binaries. - [COMMAND_EXECUTION]: The skill executes the binary being analyzed with the
--helpflag to extract CLI command structures. There is a 5-second timeout implemented to mitigate risks from interactive or long-running binaries. - [EXTERNAL_DOWNLOADS]: The skill interacts with local services (localhost) for memory recall and LLM-based classification. It specifically targets
http://127.0.0.1:8601for a memory service andlocalhost:4001for inference viascillm. These are internal platform dependencies rather than untrusted external URLs. - [COMMAND_EXECUTION]: The skill invokes other platform skills, such as
treesitteranddogpile, via theirrun.shentry points to perform AST analysis and documentation research respectively. - [DATA_EXFILTRATION]: While the skill communicates with internal services to store and recall analysis results, it does not show patterns of exfiltrating sensitive user credentials or private files to unauthorized external domains.
Audit Metadata