hunt-subdomain

Pass

Audited by Gen Agent Trust Hub on Jul 31, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides bash script snippets (e.g., in the 'Payload & Detection Patterns' section) that iterate over subdomains provided in a text file. These scripts do not sanitize input variables, which could allow for command injection if the input file (e.g., subdomains.txt) contains shell metacharacters.
  • [COMMAND_EXECUTION]: The skill documents the use of various CLI tools including 'dig', 'curl', 'aws s3api', 'subfinder', 'amass', and 'nuclei' to perform infrastructure scanning and verification tasks.
  • [SAFE]: The documentation of provider fingerprints (such as those for Vercel, Azure, and Zendesk) and impact chains (OAuth, CSP, and CORS) is consistent with professional security research and the skill's stated 'redteam' purpose.
  • [SAFE]: External references point to public security writeups and legitimate research blogs, and no instances of obfuscation or hidden malicious URLs were detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 31, 2026, 04:47 PM
Security Audit — agent-trust-hub — hunt-subdomain