linux-image-hygiene

Pass

Audited by Gen Agent Trust Hub on Sep 3, 2026

Risk Level: SAFECOMMAND_EXECUTIONPRIVILEGE_ESCALATIONPERSISTENCEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill facilitates the execution of destructive container engine commands such as docker system prune and podman system prune to reclaim storage space. The sk-container-prune.sh script automates these calls across multiple container engines.
  • [PRIVILEGE_ESCALATION]: The cleanup script requires root privileges to interact with system-wide container storage and to modify system-level configurations. It specifically writes new unit files to /etc/systemd/system/.
  • [PERSISTENCE]: The skill contains logic to install a systemd timer (container-prune.timer) and service, which ensures the cleanup script runs automatically on a persistent daily schedule (03:30 AM).
  • [INDIRECT_PROMPT_INJECTION]: The skill exposes a significant capability surface, including root-level shell execution and the ability to write to system directories. While the script validates its SCOPE input, the broad capabilities could be leveraged if the agent were manipulated into executing unintended prune scopes or targeting sensitive volumes.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 3, 2026, 02:39 AM