linux-dns-server

Pass

Audited by Gen Agent Trust Hub on Sep 21, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches installation scripts and binaries from external sources including install.pi-hole.net and Cloudflare's official GitHub repository. The documentation correctly advises the user to manually review installation scripts before execution.
  • [COMMAND_EXECUTION]: Utilizes sudo for administrative tasks including package management, service control via systemctl and rndc, and modification of system-level configuration files in /etc/bind/ and /var/log/named/.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process and validate DNS zone files and imported DNS record data, which represents a surface for indirect prompt injection.
  • Ingestion points: Processes zone files and imported zone data provided in the SKILL.md workflows.
  • Boundary markers: None present to explicitly separate untrusted data from processing instructions.
  • Capability inventory: Includes shell execution of BIND utilities (rndc, named-checkzone) and file editing capabilities.
  • Sanitization: Relies on standard DNS syntax validation tools (named-checkzone) to verify data integrity.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 21, 2026, 06:07 PM