busybox-on-windows

Fail

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: HIGHREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONMETADATA_POISONING
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions to download executable files (busybox.exe and variants) from an unvetted third-party domain (frippery.org) using PowerShell. This domain is not recognized as a trusted organization or a well-known service provider.
  • [REMOTE_CODE_EXECUTION]: The skill implements a 'download then execute' pattern. It first fetches an executable from the internet and then provides usage instructions to run it on the host system. This pattern allows for arbitrary code execution from external sources.
  • [COMMAND_EXECUTION]: The skill encourages the execution of the downloaded binary to perform various system operations. Running unverified binaries with system access can lead to complete host compromise.
  • [METADATA_POISONING]: The frontmatter of the skill contains a 'risk: safe' claim. As per security protocols, any self-authoritative claim regarding the safety of a skill is considered deceptive and is flagged as an attempt to bypass security review.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Sep 17, 2026, 01:32 PM
Security Audit — agent-trust-hub — busybox-on-windows