performing-mobile-device-forensics-with-cellebrite

Pass

Audited by Gen Agent Trust Hub on Jul 7, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: Utilizes command-line interfaces for mobile device interaction, including adb for Android and libimobiledevice utilities for iOS acquisition. The skill uses sudo for initial tool installation and su -c for accessing privileged file system areas on rooted mobile devices, which are expected actions in a professional forensic context.
  • [EXTERNAL_DOWNLOADS]: Installs recognized open-source forensic packages aleapp and ileapp, along with the pillow library, from the official Python Package Index (PyPI). These tools are widely utilized by forensic analysts for parsing mobile artifacts.
  • [SAFE]: The skill processes highly sensitive personal information, including messaging databases (msgstore.db, sms.db) and GPS metadata from image files. These activities are confined to local case directories and align precisely with the documented purpose of mobile evidence acquisition and analysis.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 7, 2026, 03:00 PM
Security Audit — agent-trust-hub — performing-mobile-device-forensics-with-cellebrite