vulnhunter
Pass
Audited by Gen Agent Trust Hub on Aug 4, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides numerous shell commands (e.g.,
grep,semgrep,bandit,slither) intended for the agent to execute when performing security audits on target codebases. - [CREDENTIALS_UNSAFE]: Several files contain example hardcoded API keys and secrets (e.g.,
sk-abc123...). These are explicitly labeled as examples of insecure practices in a security catalog to teach the agent what to identify during an audit. - [DATA_EXPOSURE]: The skill methodology involves accessing project source code and configuration files to perform security analysis, which is the primary intended function of the tool.
Audit Metadata