linux-rsync-sync

Pass

Audited by Gen Agent Trust Hub on Sep 3, 2026

Risk Level: SAFECOMMAND_EXECUTIONPRIVILEGE_ESCALATIONEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to generate and execute rsync commands for local and remote file synchronization, as well as ssh commands for secure transport.\n- [PRIVILEGE_ESCALATION]: Recommends the use of sudo to install skill-related binaries and to perform backup operations that require administrative permissions to access source or destination paths.\n- [EXTERNAL_DOWNLOADS]: Documents the installation of standard system packages (rsync, openssh-server) using official package managers like apt and dnf.\n- [INDIRECT_PROMPT_INJECTION]: The skill ingests data from external source directories during rsync operations, creating a surface for potential indirect prompt injection if those files contain instructions.\n
  • Ingestion points: Source directory contents specified by the user during rsync tasks (SKILL.md).\n
  • Boundary markers: The instructions explicitly require the use of --dry-run and the itemized change list (-i) for review before final execution.\n
  • Capability inventory: File system modifications including writes and deletions (rsync), and network access via SSH.\n
  • Sanitization: Relies on human verification of dry-run output rather than automated content cleaning.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 3, 2026, 02:40 AM