izm1chael's picture
Publish Layerfault deep challenge LF-CH-MCPX-0001
a509354 verified
|
Raw
History Blame Contribute Delete
2.23 kB
---
license: apache-2.0
tags:
- layerfault
- security-research
- model-security
- synthetic
- adversarial-testing
extra_gated_prompt: >-
This repository is a synthetic security-test artifact from the Layerfault
corpus. It intentionally contains adversarial characteristics (e.g.
suspicious pickle opcodes, executable-format smuggling, prompt-injection
strings) designed to exercise security scanner detection rules. It is
**not** a usable ML model and must never be loaded or executed outside an
isolated scanner-testing environment. By accepting, you confirm you
understand this repository is a test fixture, not production model
weights.
extra_gated_button_content: I understand this is a security test fixture and accept the risk
gated: auto
---
# agent-clean-mcp-control
> **SECURITY TEST ARTIFACT: DO NOT USE AS A PRODUCTION MODEL**
This repository is part of the Layerfault synthetic security corpus.
It is deliberately constructed to contain security-relevant characteristics for scanner testing.
**Corpus ID:** `LF-CH-MCPX-0001`
## Purpose
Agent clean mcp control.
## Direct expected Layerfault rules
- None; this repository is a control/comparison input.
## Candidate rules
These are deliberately plausible targets that remain marked as candidates until the exact
Layerfault build used for certification confirms them.
- None
## Negative-control rules
These should remain silent for this corpus item.
- `LF-MCP-TLS-ABSENT`
- `LF-MCP-SCOPE-OVERBROAD`
## Safety
The corpus uses fake secrets, loopback/`.invalid` network destinations, harmless marker output,
and synthetic model behavior only. It is intended for static scanning and isolated security testing.
## Challenge classification
- Severity: **informational**
- Difficulty: **basic**
- Expected admission decision: **PASS**
- Control type: **negative**
- Attack surface: agent-mcp-static
- Techniques: clean, mcp, control
- Transformations: none
### Ground-truth oracle IDs
- `LF-ORACLE-MCPX-0001`
These oracle IDs describe synthetic ground truth. They do not claim that a
matching Layerfault detector already exists. A challenge may intentionally expose
a scanner blind spot and remain unmapped until the detector is implemented.