binutils
Pass
Audited by Gen Agent Trust Hub on Feb 20, 2026
Risk Level: SAFE
Full Analysis
- [SAFE] (SAFE): The skill contains no evidence of prompt injection, hardcoded credentials, malicious remote code execution, or unauthorized network activity. It functions correctly as a developer cheatsheet for legitimate tools.
- [Indirect Prompt Injection] (SAFE): The skill documents tools that ingest external data, representing a theoretical attack surface.
- Ingestion points: Commands such as
strings,addr2line, andc++filt(via stdin) in bothSKILL.mdandreferences/cheatsheet.mdprocess data from external files. - Boundary markers: No markers or warnings regarding untrusted content are included in the examples.
- Capability inventory: The skill enables shell-based binary manipulation (e.g.,
objcopy,ar). - Sanitization: No input validation or sanitization steps are provided for the processed data.
Audit Metadata