claw-code-harness

Fail

Audited by Gen Agent Trust Hub on Sep 12, 2026

Risk Level: HIGHEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill documentation includes instructions to download and run the official Rust installer script from https://sh.rustup.rs. This is a well-known and trusted service for development toolchains.
  • [INDIRECT_PROMPT_INJECTION]: The skill's audit feature processes local archived snapshots to perform parity checks, which serves as an ingestion point for potentially untrusted data. 1. Ingestion points: The parity-audit command reads data from local snapshots stored on disk. 2. Boundary markers: The skill does not define specific delimiters or instructions to ignore commands within the snapshot data. 3. Capability inventory: The skill provides CLI access for manifest inspection and tool inventory reports. 4. Sanitization: No validation or sanitization of the archive content is documented.
Recommendations
  • HIGH: Downloads and executes remote code from: https://sh.rustup.rs - DO NOT USE without thorough review
Audit Metadata
Risk Level
HIGH
Analyzed
Sep 12, 2026, 11:45 PM
Security Audit — agent-trust-hub — claw-code-harness