subfinder
Pass
Audited by Gen Agent Trust Hub on Sep 3, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides instructions for executing the
subfinderandhttpxcommand-line tools for security reconnaissance. This behavior is consistent with the skill's stated purpose. - [INDIRECT_PROMPT_INJECTION]: The skill processes data from external sources (passive DNS and subdomain records) and passes it to subsequent tools and files, creating a potential surface for indirect prompt injection.
- Ingestion points: Output from passive subdomain enumeration commands defined in
SKILL.md. - Boundary markers: Absent; there are no instructions to use delimiters or ignore embedded commands in the processed data.
- Capability inventory: The skill utilizes shell execution and file write capabilities across the provided procedure.
- Sanitization: Absent; the results are piped directly between tools and written to files without validation.
Audit Metadata