uncover-search
Pass
Audited by Gen Agent Trust Hub on Jun 16, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill provides guidance on using the 'uncover' command-line interface and piping its output into other standard security tools such as 'httpx', 'naabu', and 'nuclei'. These are recognized utilities used for reconnaissance and vulnerability scanning.
- [EXTERNAL_DOWNLOADS]: References the official GitHub repository for ProjectDiscovery's 'uncover' tool. ProjectDiscovery is a well-known and trusted organization within the cybersecurity industry.
- [CREDENTIALS_UNSAFE]: The documentation identifies the correct local configuration path (~/.config/uncover/provider-config.yaml) for managing API keys. This follows best practices for tool configuration and does not involve hardcoding secrets or unsafe credential handling.
- [PROMPT_INJECTION]: No patterns were detected that attempt to override agent behavior or bypass safety guidelines.
Audit Metadata