ln-033-hex-relay-lifecycle

Pass

Audited by Gen Agent Trust Hub on May 5, 2026

Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill automates system-level configuration on a VPS, such as managing systemd services and modifying files in /etc/ and /opt/. These actions are primary functions of the deployment lifecycle.
  • [DATA_EXFILTRATION]: The skill interacts with sensitive environment files and databases. It contains strict negative constraints to prevent unauthorized data exposure, specifically stating that Telegram tokens and provider secrets must not be printed or stored.
  • [PROMPT_INJECTION]: The skill processes external data via project variables and Telegram user synchronization.
  • Ingestion points: Input variables and Telegram user data sync (SKILL.md).
  • Boundary markers: Absent.
  • Capability inventory: Bash and SSH tools for file writing and service management.
  • Sanitization: Instructions explicitly forbid printing or storing sensitive credential values.
Audit Metadata
Risk Level
SAFE
Analyzed
May 5, 2026, 08:04 PM