hunt-csrf
Pass
Audited by Gen Agent Trust Hub on Aug 27, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill serves as a repository of knowledge and techniques for CSRF vulnerability research. It does not contain automated malicious code, hidden instructions, or unauthorized data access mechanisms.
- [COMMAND_EXECUTION]: Provides command-line snippets (e.g., curl, grep, jq) for manual testing and verification of security vulnerabilities on target systems. These are presented as educational templates using placeholder domains.
- [EXTERNAL_DOWNLOADS]: Contains instructions for fetching web headers and API responses to identify security misconfigurations. All network activity described is for investigative purposes and targets user-defined endpoints.
- [INDIRECT_PROMPT_INJECTION]: The skill documents methods to ingest data from external targets (e.g., via curl). While this creates an attack surface for untrusted content to enter the agent's context, the skill is focused on manual verification by the user and does not include automated or unsafe interpolation of this data into critical commands. Ingestion points: Target website responses; Boundary markers: None; Capability inventory: curl, grep; Sanitization: None.
Audit Metadata