supply-chain-audit
Warn
Audited by Gen Agent Trust Hub on Sep 2, 2026
Risk Level: MEDIUMCOMMAND_EXECUTIONPRIVILEGE_ESCALATIONDYNAMIC_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill performs significant filesystem and process modifications, including the use of
rm -rfto delete directories,pkillto terminate specific processes, andfindto locate and remove workflow files. - [PRIVILEGE_ESCALATION]: The remediation instructions include commands to disable and remove system-level persistence mechanisms using
systemctl(for Linux systemd services) andlaunchctl(for macOS LaunchAgents). - [DYNAMIC_EXECUTION]: The skill executes a shell script from a dynamically constructed path (
$HOME/.claude/scripts/supply-chain-audit.sh) to perform the forensic audit. - [COMMAND_EXECUTION]: The audit sub-command includes instructions for horizontal movement, using
sshto execute the local forensic script on multiple remote hosts simultaneously.
Audit Metadata