hunt-ato
Pass
Audited by Gen Agent Trust Hub on Jul 31, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's content is educational and oriented towards security auditing. No malicious behavior or intent was detected during the analysis.\n- [COMMAND_EXECUTION]: The skill employs
curlandpython3for standard web request and response parsing. The patterns flagged by automated tools involve using Python as a JSON processor for response data rather than executing remote code.\n- [EXTERNAL_DOWNLOADS]: Network requests target standard OAuth endpoints and well-known service providers (such as Microsoft's identity platform). These are legitimate interactions within the context of security testing.\n- [PROMPT_INJECTION]: The skill does not contain instructions that attempt to override AI safety guardrails or manipulate agent behavior.\n- [DATA_EXFILTRATION]: No unauthorized access to sensitive files or exfiltration of credentials was identified. The testing procedures utilize placeholders and controlled test accounts.
Audit Metadata