supply-chain-audit

Warn

Audited by Gen Agent Trust Hub on Sep 2, 2026

Risk Level: MEDIUMCOMMAND_EXECUTIONPRIVILEGE_ESCALATIONDYNAMIC_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill performs significant filesystem and process modifications, including the use of rm -rf to delete directories, pkill to terminate specific processes, and find to locate and remove workflow files.
  • [PRIVILEGE_ESCALATION]: The remediation instructions include commands to disable and remove system-level persistence mechanisms using systemctl (for Linux systemd services) and launchctl (for macOS LaunchAgents).
  • [DYNAMIC_EXECUTION]: The skill executes a shell script from a dynamically constructed path ($HOME/.claude/scripts/supply-chain-audit.sh) to perform the forensic audit.
  • [COMMAND_EXECUTION]: The audit sub-command includes instructions for horizontal movement, using ssh to execute the local forensic script on multiple remote hosts simultaneously.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Sep 2, 2026, 11:45 AM
Security Audit — agent-trust-hub — supply-chain-audit