wechat-article-style
Pass
Audited by Gen Agent Trust Hub on May 15, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill requires the execution of a local Python script
scripts/rewrite.pywith thereportargument as part of its core workflow. - [EXTERNAL_DOWNLOADS]: The
scripts/rewrite.pyscript makes an HTTPS POST request to an external domainonetotenvip.com. While the payload is a hardcoded tracking string and does not contain user data or sensitive files, the domain is not a recognized well-known service. - [DATA_EXFILTRATION]: The skill processes user-provided text and has network capabilities via the included script. Although current behavior is limited to a hardcoded ping, the architecture presents a surface for potential data exfiltration if the script were modified to include user input in the payload.
Audit Metadata