lfi-rfi-methodology
Pass
Audited by Gen Agent Trust Hub on Apr 22, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill directs the agent to execute shell commands using
curl,ffuf, andgitto interact with target systems and perform security testing.- [COMMAND_EXECUTION]: Contains instructions for running local Python code to test for session-based race conditions on remote targets.- [EXTERNAL_DOWNLOADS]: Fetches a specialized security tool from the Synacktiv GitHub repository to assist in generating exploit payloads.- [PROMPT_INJECTION]: The skill processes untrusted data from remote targets, creating an indirect prompt injection surface. * Ingestion points: The agent reads response data from remote servers viacurlandrequestsacross all files. * Boundary markers: No specific delimiters or instructions are used to isolate or ignore embedded commands in target response content. * Capability inventory: The agent is authorized to usecurl,ffuf,git, andpython3for execution and network operations. * Sanitization: The methodology does not provide mechanisms to sanitize or validate the content retrieved from remote targets before the agent processes it.
Audit Metadata