skills/mukul975/anthropic-cybersecurity-skills/configuring-snort-ids-for-intrusion-detection/Gen Agent Trust Hub
configuring-snort-ids-for-intrusion-detection
Pass
Audited by Gen Agent Trust Hub on Apr 8, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill performs high-privilege administrative tasks using sudo, including installing system packages, modifying network interface parameters (ethtool, ip link), and creating systemd service units for persistence.
- [EXTERNAL_DOWNLOADS]: Fetches source code and rulesets from official repositories including snort.org and the Snort3 organization on GitHub.
- [COMMAND_EXECUTION]: The scripts/agent.py management utility invokes the Snort binary via subprocess to perform configuration validation and traffic analysis using environment-sourced paths.
Audit Metadata