vulnhunter

Pass

Audited by Gen Agent Trust Hub on Aug 4, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides numerous shell commands (e.g., grep, semgrep, bandit, slither) intended for the agent to execute when performing security audits on target codebases.
  • [CREDENTIALS_UNSAFE]: Several files contain example hardcoded API keys and secrets (e.g., sk-abc123...). These are explicitly labeled as examples of insecure practices in a security catalog to teach the agent what to identify during an audit.
  • [DATA_EXPOSURE]: The skill methodology involves accessing project source code and configuration files to perform security analysis, which is the primary intended function of the tool.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 4, 2026, 12:31 AM
Security Audit — agent-trust-hub — vulnhunter