metasploit-framework

Pass

Audited by Gen Agent Trust Hub on Feb 28, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions to download the Metasploit installation script from Rapid7's official GitHub repository (github.com/rapid7/metasploit-omnibus). As Rapid7 is the official maintainer of the Metasploit Framework, this is considered a trusted source.
  • [COMMAND_EXECUTION]: The skill includes several administrative commands using sudo to manage the PostgreSQL database service (systemctl start postgresql) and initialize the Metasploit database (msfdb init). These are standard operational requirements for the framework's functionality.
  • [COMMAND_EXECUTION]: The documentation contains a vast library of commands for the Metasploit Framework, including exploitation, payload generation (msfvenom), and post-exploitation activities such as privilege escalation (getsystem), credential harvesting (hashdump), and persistence mechanisms. These commands are provided as instructional material for the user to perform security testing and are consistent with the skill's stated purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 28, 2026, 11:41 AM