Audit Agent Code

Security-audit an AI agent's OWN framework code for classic appsec vulnerabilities the LLM can't defend — path traversal, command injection, SSRF, fail-open security controls, missing/late auth, unsafe deserialization — especially at the untrusted-input boundaries (channels, file/media handlers, config & skill loaders) that run around and before the model. The LLM layer is often hardened; the plumbing around it usually isn't. Authorized testing of agents you own or are permitted to test.

William2333ZZ bfd717e 5.7 KB Updated

File contents

William2333ZZ/trustshell/tree/main/skills/audit-agent-code commit bfd717e897

Frequently asked questions

npx skillmds@latest add william2333zz/audit-agent-code