competition-dpapi-credential-chain

Pass

Audited by Gen Agent Trust Hub on Jun 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists of documentation and markdown-based checklists designed to assist in forensic-style analysis of Windows credential stores (DPAPI blobs, masterkeys, vaults, and browser credentials). No executable scripts or automation tools are included in this skill bundle.
  • [DATA_EXPOSURE]: While the skill's primary purpose is to identify and process sensitive information (DPAPI masterkeys and browser passwords), the instructions are scoped to a local CTF sandbox environment as part of a debug or challenge workflow. No network exfiltration commands or hardcoded credentials were found.
  • [INDIRECT_PROMPT_INJECTION]: The skill instructions involve analyzing untrusted external artifacts (DPAPI blobs and credential stores). This represents a potential ingestion surface for indirect prompt injection if those artifacts were crafted to include malicious instructions. However, the risk is mitigated as this skill lacks any associated scripts or tools to execute commands or perform network operations based on the analyzed data.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 20, 2026, 03:16 AM
Security Audit — agent-trust-hub — competition-dpapi-credential-chain