broken-authentication

Pass

Audited by Gen Agent Trust Hub on Jun 13, 2026

Risk Level: SAFECOMMAND_EXECUTIONREMOTE_CODE_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides specific command-line instructions for the 'hydra' tool to perform brute-force attacks against login forms.
  • [REMOTE_CODE_EXECUTION]: The skill includes a functional Python script designed to programmatically fetch multiple session tokens from a target web application using the 'requests' library for the purpose of entropy analysis.
  • [PROMPT_INJECTION]: The skill is subject to indirect prompt injection risks as it is designed to ingest and process untrusted inputs, such as target URLs and credentials, which are then used directly in network requests and shell commands.
  • Ingestion points: Target application URL and credentials provided by the user (SKILL.md).
  • Boundary markers: No explicit delimiters or instructions to ignore embedded commands in the target data are provided.
  • Capability inventory: The skill utilizes shell command execution (Hydra) and network operations (Python requests library).
  • Sanitization: There is no evidence of input validation or sanitization for the target URL or account credentials before they are used in commands or scripts.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 13, 2026, 02:06 AM
Security Audit — agent-trust-hub — broken-authentication