powershell-capability-chain

SECURITY TEST ARTIFACT: DO NOT USE AS A PRODUCTION MODEL

This repository is part of the Layerfault synthetic security corpus. It is deliberately constructed to contain security-relevant characteristics for scanner testing.

Corpus ID: LF-CORPUS-PS-0001

Purpose

PowerShell package with synthetic credential access, dynamic code, loopback download/execute syntax, native load, process, encoded command and package-install syntax.

Direct expected Layerfault rules

  • LF-PS-SEMANTIC-CREDENTIAL-ACCESS
  • LF-PS-SEMANTIC-DOWNLOAD-EXECUTE
  • LF-PS-SEMANTIC-DYNAMIC-CODE
  • LF-PS-SEMANTIC-NATIVE-LOAD
  • LF-PS-SEMANTIC-NETWORK
  • LF-PS-SEMANTIC-PACKAGE-INSTALL
  • LF-PS-SEMANTIC-PROCESS

Candidate rules

These are deliberately plausible targets that remain marked as candidates until the exact Layerfault build used for certification confirms them.

  • LF-PS-DOWNLOAD
  • LF-PS-ENCODED-COMMAND
  • LF-PS-INVOKE-EXPRESSION

Negative-control rules

These should remain silent for this corpus item.

  • None

Safety

The corpus uses fake secrets, loopback/.invalid network destinations, harmless marker output, and synthetic model behavior only. It is intended for static scanning and isolated security testing.

Downloads last month

-

Downloads are not tracked for this model. How to track
Safetensors
Model size
160 params
Tensor type
F32
·
Inference Providers NEW
This model isn't deployed by any Inference Provider. 🙋 Ask for provider support

Collection including LayerFault/powershell-capability-chain