offensive-tls-attacks
Pass
Audited by Gen Agent Trust Hub on Aug 27, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADSDYNAMIC_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted external data, including JSON output from
testssl.shand certificate data from thecrt.shAPI. Ingestion points occur inSKILL.mdwhen the agent is instructed to parse tool results. No explicit boundary markers or input sanitization are present in the provided scripts. Capabilities available include network access viacurlandrequests, and shell execution for tools likeopenssl,nmap, andtlsx. - [EXTERNAL_DOWNLOADS]: The instructions recommend installing the
certstreamPython package for monitoring Certificate Transparency logs. This is a standard library used in security reconnaissance. - [DYNAMIC_EXECUTION]: The skill provides Frida scripts for runtime instrumentation to bypass mobile certificate pinning. This dynamic code injection is a standard procedure for mobile security auditing as described in the skill's purpose.
Audit Metadata