pwnote-offsec-pen200
Pass
Audited by Gen Agent Trust Hub on Jul 22, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues detected. The skill's content is entirely instructional, providing markdown templates and process guidelines for cybersecurity certification reporting.
- [PROMPT_INJECTION]: The instructions do not contain any patterns typical of prompt injection, such as attempts to override system instructions, bypass safety filters, or extract system prompts.
- [DATA_EXFILTRATION]: There are no commands or scripts that access sensitive files or perform network operations. While the skill mentions 'proof.txt' and 'local.txt', these are discussed in the context of documentation requirements for the OSCP exam, not as files for the agent to actively retrieve from the host system.
- [REMOTE_CODE_EXECUTION]: The skill does not include any external dependencies, package installations, or remote script execution patterns. It consists solely of descriptive text and organizational structures.
Audit Metadata