digital-forensics

Pass

Audited by Gen Agent Trust Hub on Jul 18, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: The skill contains directive sections labeled "ACTION REQUIRED" and "NOW" to guide the agent's operational workflow. These instructions are functional and intended to ensure the agent verifies authorization and follows forensic best practices (e.g., establishing a chain of custody) before performing analysis.
  • [COMMAND_EXECUTION]: The skill provides example CLI syntax for forensic utilities such as Volatility 3 and tshark. These serve as templates for memory and network analysis and do not include arbitrary or dangerous command execution patterns.
  • [DATA_EXFILTRATION]: The instructions require the agent to read local context files like ../field-journal/precedent-pentest.md to confirm authorization. This is a local file-read operation within the skill's expected scope and does not involve the external transmission of sensitive data.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 18, 2026, 08:15 AM
Security Audit — agent-trust-hub — digital-forensics