rev-ios-dump
Pass
Audited by Gen Agent Trust Hub on Jul 11, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: Fetches the
frida-ios-dumptool from the author's GitHub repository and installs dependencies from official Python and Node.js package registries. - [COMMAND_EXECUTION]: Instructs the user to execute local and remote shell commands (via SSH) to interact with jailbroken iOS devices for process identification, decryption, and file system exploration.
- [DATA_EXFILTRATION]: The skill facilitates the transfer of decrypted application binaries (IPA files) from a mobile device to a host machine via SSH; this behavior is a core functional requirement and no unauthorized external exfiltration was observed.
- [PROMPT_INJECTION]: The skill ingests data from external tool outputs (frida-ps, plutil, otool). This represents an indirect prompt injection surface common in security tooling, but it is documented neutrally without signs of malicious intent or exploitation.
Audit Metadata