rev-ios-dump

Pass

Audited by Gen Agent Trust Hub on Jul 11, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches the frida-ios-dump tool from the author's GitHub repository and installs dependencies from official Python and Node.js package registries.
  • [COMMAND_EXECUTION]: Instructs the user to execute local and remote shell commands (via SSH) to interact with jailbroken iOS devices for process identification, decryption, and file system exploration.
  • [DATA_EXFILTRATION]: The skill facilitates the transfer of decrypted application binaries (IPA files) from a mobile device to a host machine via SSH; this behavior is a core functional requirement and no unauthorized external exfiltration was observed.
  • [PROMPT_INJECTION]: The skill ingests data from external tool outputs (frida-ps, plutil, otool). This represents an indirect prompt injection surface common in security tooling, but it is documented neutrally without signs of malicious intent or exploitation.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 11, 2026, 10:23 AM
Security Audit — agent-trust-hub — rev-ios-dump