sync-system-bus

Warn

Audited by Gen Agent Trust Hub on Sep 23, 2026

Risk Level: MEDIUMPERSISTENCEPRIVILEGE_ESCALATIONCOMMAND_EXECUTIONDYNAMIC_EXECUTION
Full Analysis
  • [PERSISTENCE]: The skill provides instructions to establish a persistent background service on macOS. It involves placing a configuration file in ~/Library/LaunchAgents/com.joel.talon.plist and using launchctl bootstrap to ensure the talon binary starts automatically and maintains execution across user sessions.
  • [PRIVILEGE_ESCALATION]: The instructions include the use of codesign -fs - to sign locally compiled binaries. This is used to bypass macOS security protections (such as Gatekeeper or ad-hoc signature requirements) that would otherwise prevent the binary from running or being managed by the system supervisor.
  • [COMMAND_EXECUTION]: The skill performs extensive shell operations including local script execution (publish-system-bus-worker.sh), platform-specific Docker builds (linux/arm64), Kubernetes rollout management (kubectl apply, rollout status), and service lifecycle control via launchctl.
  • [DYNAMIC_EXECUTION]: The workflow involves runtime compilation of Rust source code (cargo build --release) from a local directory, followed by moving the resulting binary to a system path and executing it as a supervisor process.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Sep 23, 2026, 05:03 PM
Security Audit — agent-trust-hub — sync-system-bus