threat-hunting

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [NO_CODE]: The skill consists entirely of Markdown files providing educational and procedural guidance for security analysts. It does not ship with any Python, JavaScript, or shell scripts that would execute on the agent's environment.
  • [INDIRECT_PROMPT_INJECTION]: The skill describes workflows for the manual or SIEM-based analysis of external telemetry (such as Sysmon and Windows Security logs). Although these data sources are externally controlled, the skill contains no automated processing code that could be exploited via injection.
  • [SAFE]: Analysis of the documentation and metadata revealed no indicators of malicious activity, including prompt injection, credential harvesting, obfuscation, or unauthorized persistence mechanisms.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 12:44 PM
Security Audit — agent-trust-hub — threat-hunting