script-generator
Generates optimized, syntax-validated scripts on demand. Never executes — only generates, optimizes, and validates.
How do I install this agent skill?
npx skills add https://github.com/transilienceai/communitytools --skill script-generatorIs this agent skill safe to install?
- Gen Agent Trust Hubpass
This skill generates scripts for Python, PowerShell, and Bash based on user input. It includes best practices like avoiding hardcoded passwords. However, because it builds executable code directly from user tasks without specific safety checks or input sanitization, there is a risk that malicious user input could influence the generated scripts. The skill also provides ready-to-use commands for running these scripts once they are created.
- Socketpass
No alerts
- Snykpass
Risk: LOW · No issues
What does this agent skill do?
Script Generator
Generates optimized, syntax-validated scripts on demand. Never executes scripts.
When to Use
- Scripts exceed ~30 lines
- Parallel operations on multiple targets
- Multi-library patterns (impacket + ldap3, pypsrp + concurrent.futures)
- Repeated auth handshakes or connection setup
Request Format
LANGUAGE: python3 | powershell | bash
TASK: What the script should accomplish
TARGETS: IPs, hostnames, URLs
CREDENTIALS: user, pass, hash, domain, certs
AVAILABLE_LIBRARIES: What's installed
OUTPUT_FORMAT: stdout format, file writes
CONSTRAINTS: timeout, no destructive ops, output directory
CONTEXT: (optional) Prior output, errors, what failed
Optimization
- Multiple targets →
concurrent.futures.ThreadPoolExecutor -
3 HTTP requests to same host →
requests.Session - Repeated auth → single auth, reuse session/token
- Prefer high-level libraries (impacket, ldap3, requests)
Output
Write to OUTPUT_DIR/artifacts/<task_name>.<ext>. Return:
SCRIPT_PATH: OUTPUT_DIR/artifacts/task_name.py
LANGUAGE: python3
VALIDATION: PASSED
EXECUTION: python3 OUTPUT_DIR/artifacts/task_name.py
DEPENDENCIES: impacket, concurrent.futures (stdlib)
Rules
- Never execute scripts — only generate, optimize, validate
- Per-operation error handling — no bare
except: - Timeout enforcement on all I/O
- Validate syntax before returning
- No secrets hardcoded — credentials as variables at top
How can the creator link this skill?
Add the canonical catalog link to the repository README so users can inspect current installs and available audits. The publishing guide covers the complete discovery path.
<a href="https://skillzs.dev/skills/transilienceai/communitytools/script-generator">View script-generator on skillZs</a>