linux-image-hygiene
Pass
Audited by Gen Agent Trust Hub on Sep 3, 2026
Risk Level: SAFECOMMAND_EXECUTIONPRIVILEGE_ESCALATIONPERSISTENCEINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill facilitates the execution of destructive container engine commands such as
docker system pruneandpodman system pruneto reclaim storage space. Thesk-container-prune.shscript automates these calls across multiple container engines. - [PRIVILEGE_ESCALATION]: The cleanup script requires root privileges to interact with system-wide container storage and to modify system-level configurations. It specifically writes new unit files to
/etc/systemd/system/. - [PERSISTENCE]: The skill contains logic to install a systemd timer (
container-prune.timer) and service, which ensures the cleanup script runs automatically on a persistent daily schedule (03:30 AM). - [INDIRECT_PROMPT_INJECTION]: The skill exposes a significant capability surface, including root-level shell execution and the ability to write to system directories. While the script validates its
SCOPEinput, the broad capabilities could be leveraged if the agent were manipulated into executing unintended prune scopes or targeting sensitive volumes.
Audit Metadata