metasploit-framework
Pass
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides detailed instructions for executing local shell commands using
msfconsole,msfvenom, and the Meterpreter environment. These commands are necessary for the skill's primary purpose of facilitating penetration testing. - Evidence includes instructions for launching
msfconsole, generating payloads withmsfvenom, and managing post-exploitation sessions. - The skill mitigates risk by requiring a mandatory confirmation gate before executing any sensitive commands.
- [REMOTE_CODE_EXECUTION]: While the skill explains how to execute code on target systems as part of its intended offensive security purpose, it contains no remote code execution patterns targeting the host agent. It explicitly advises against using unpinned remote installer scripts.
Audit Metadata