Back to skill

Security audit

AgentDomains

Security checks for vulnerabilities and agentic risk

Overview

This skill coherently helps agents claim and manage public AgentDomains hostnames, with the main risks clearly tied to normal DNS/account operations.

Before installing, be comfortable with a helper that may download a Go CLI and create/store an AgentDomains API key. Use it for hostnames you intend to publish, review DNS/forward/proxy/delete commands before running them, and confirm any account email link within the documented 30-day window if you want names to remain permanent.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.