linux-dns-server
Pass
Audited by Gen Agent Trust Hub on Sep 21, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: Fetches installation scripts and binaries from external sources including
install.pi-hole.netand Cloudflare's official GitHub repository. The documentation correctly advises the user to manually review installation scripts before execution. - [COMMAND_EXECUTION]: Utilizes
sudofor administrative tasks including package management, service control viasystemctlandrndc, and modification of system-level configuration files in/etc/bind/and/var/log/named/. - [INDIRECT_PROMPT_INJECTION]: The skill is designed to process and validate DNS zone files and imported DNS record data, which represents a surface for indirect prompt injection.
- Ingestion points: Processes zone files and imported zone data provided in the
SKILL.mdworkflows. - Boundary markers: None present to explicitly separate untrusted data from processing instructions.
- Capability inventory: Includes shell execution of BIND utilities (
rndc,named-checkzone) and file editing capabilities. - Sanitization: Relies on standard DNS syntax validation tools (
named-checkzone) to verify data integrity.
Audit Metadata