# Safe Cron Runner

> Executes background tasks safely by dropping privileges and enforcing timeouts. Includes ISNAD signed manifest.

- Skill: `modbender/safe-cron-runner` (Agent Skill, multi-file: 4 files)
- Install (CLI): `npx skillmds@latest add modbender/safe-cron-runner`
- Raw SKILL.md: https://api.skillmd.com/api/skills/modbender/safe-cron-runner/raw
- Safety review: pending (external: skill-scanner PASS, skillspector PASS)
- Works with: Claude Code, Claude.ai, OpenAI Codex
- Category: Coding & Dev Tools
- Author: modbender (https://skillmd.com/u/modbender)
- Updated: 2026-09-09
- Page: https://skillmd.com/skills/modbender/safe-cron-runner

---


# Safe Cron Runner 🛡️

**A secure background task executor for AI Agents.**

## Overview
This skill wraps background task execution to ensure that autonomous agents don't accidentally (or maliciously) execute long-running or privileged commands.

## Key Protections
1. **Privilege Dropping:** Automatically drops root privileges (switches to `nobody`) before executing the subprocess.
2. **Strict Timeouts:** Enforces hard timeouts to prevent infinite loops or resource exhaustion.
3. **Shell Injection Protection:** Uses list-based command execution (subprocess without shell) to prevent common command injection attacks.
4. **Transparent Logging:** Separates and logs `stdout`, `stderr`, and execution status for auditability.

## ISNAD Signed
This skill includes an ISNAD manifest (`isnad_manifest.json`) verifying the integrity of the release.

## Usage

```python
from safe_cron import SafeCronRunner

runner = SafeCronRunner(safe_user="nobody", timeout_sec=60)

# Execute command as a list for safety
result = runner.run_task(["ls", "-la", "/tmp"])
print(result)
```

