hunting-for-dns-based-persistence

Pass

Audited by Gen Agent Trust Hub on Mar 15, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The script scripts/agent.py executes the dig system command using the subprocess module to perform DNS record resolution for subdomains and target domains. This is a core functional component for detecting unauthorized DNS records.
  • [SAFE]: The skill interacts with SecurityTrails (api.securitytrails.com), a well-known service for passive DNS and threat hunting data. All network communication is legitimate and aligned with the skill's documented purpose. No data exfiltration or hardcoded credentials were found.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 15, 2026, 01:51 PM