relocate-claude-vm
Pass
Audited by Gen Agent Trust Hub on Sep 28, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The
windows.ps1script executes shell commands via the command interpretercmd /cto handle NTFS directory junctions and directory removal. - The script interpolates the
$Sourceand$destvariables directly into the shell command strings formklink /Jandrmdirusing double quotes for wrapping. - A lack of rigorous sanitization for shell metacharacters (e.g.,
&,|,^) in these path variables could allow for command injection if the agent is tricked into using a maliciously crafted path derived from untrusted external data.
Audit Metadata