Security audit
Hubo
Security checks for vulnerabilities and agentic risk
Overview
Hubo is a disclosed multi-agent coding workflow that requires explicit user activation and keeps its file-editing and review roles purpose-aligned.
Install this if you want an explicitly invoked coding workflow that uses two agent roles and may take longer or produce verbose transcripts. Avoid invoking it on sensitive repositories unless you are comfortable with the work agent editing files and the reviewer inspecting code and verification evidence.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
