ntlm-relay-coercion

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFENO_CODECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [SAFE]: The skill provides technical documentation and playbooks for security auditing purposes, specifically NTLM relay and authentication coercion. No malicious behavior, obfuscation, or safety bypasses were identified.
  • [NO_CODE]: The skill consists entirely of Markdown documentation and does not include any executable scripts or files in its distribution.
  • [COMMAND_EXECUTION]: Documentation includes command-line examples for industry-standard network security tools, such as Responder, ntlmrelayx, and PetitPotam, which are intended for use in authorized penetration testing environments.
  • [EXTERNAL_DOWNLOADS]: The skill references external security research repositories (e.g., GitHub links for the Coercer tool) as technical resources for the auditing procedures described.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 02:15 PM
Security Audit — agent-trust-hub — ntlm-relay-coercion