project-commands

    Use when installing, testing, linting, building, running, deploying, rolling back, or validating this repository so the agent does not rediscover commands repeatedly.

    Rank#-2700
    theau-pauwelsskills.shDomain expertise1Last updated Oct 1, 2026, 06:27 AMskills.sh/theau-pauwels/nixos-infra-perso/project-commands
    Created
    6 months ago
    Last commit
    last month

    Security Findings

    Hardcoded C2 infrastructure2×

    SuspiciousAnalyzer

    Hardcoded public IP address: 87.106.38.127

    Hardcoded public IP address: 82.165.20.195

    Credential exfiltration chain

    MaliciousAnalyzer

    Sensitive file access (hosts/theau-vps/secrets.enc.yaml) with exfiltration URL (https://theau-vps.duckdns.org)

    Sensitive file access4×

    SuspiciousAnalyzer

    Access to sensitive file: hosts/theau-vps/secrets.enc.yaml

    Access to sensitive file: ~/.config/sops/age/keys.txt

    Access to sensitive file: ~/.ssh/theau-vps-deploy

    Access to sensitive file: /etc/wireguard/wg0.conf

    Excessive permissions scope

    SuspiciousAnalyzer

    4 sensitive file(s) and 10 external URL(s)

    Dynamic DNS endpoint

    SuspiciousAnalyzer

    Dynamic DNS endpoint: https://theau-vps.duckdns.org

    Low-reputation referenced domain

    SuspiciousAnalyzer

    Referenced domain theau.net is low-reputation (registered 159 days ago (< 365d)): https://wg.theau.net

    Hardcoded C2 with exfil/exec behavior

    MaliciousAnalyzer

    Contacts a hardcoded public IP paired with download/eval/sensitive-access/upload

    No tagged releases

    SuspiciousLineage

    Repo ships no git tags and no GitHub releases — consumers cannot pin to stable, reviewable versions

    No license file

    SuspiciousLineage

    No license file at the repo root and GitHub's licenseInfo is empty — code's legal status is unclear

    Flagged by the hosting marketplace

    SuspiciousLineage

    the skills.sh security audit flagged this skill (status=warn, risk=medium) — Snyk: W013 Attempt to modify system services in skill instructions. — Attempt to modify system services in skill instructions detected (high risk: 0.90). Contains multiple instructions that run with sudo or modify system/remote configuration (sed -i, systemctl, deploy scripts, register SSH keys, modify docker-compose, etc.), and explicitly warns that some commands mutate live infrastructure — this pushes the agent to change machine state and obtain elevated actions.

    Versions

    1
    • Scanned Oct 1, 2026, 06:27 AMHigh