recon-salons
Pass
Audited by Gen Agent Trust Hub on Jul 9, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill instructions and code samples are designed for security researchers to identify common vulnerabilities in the salon industry. It provides templates for using standard command-line tools (curl, grep, jq) to interact with target web servers and third-party booking APIs.
- [COMMAND_EXECUTION]: The skill includes shell command templates for reconnaissance. These commands target external web servers specified by variables like $TARGET and $BUSINESS_ID. The operations are limited to information gathering and do not involve privilege escalation, persistence, or sensitive local file access.
- [EXTERNAL_DOWNLOADS]: The skill references well-known booking services such as Booksy, Vagaro, Square, Fresha, and StyleSeat. Interactions with these services' public APIs are within the scope of legitimate security testing for this sector.
Audit Metadata