pentest-xss

Fail

Audited by Snyk on Feb 24, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E006: Malicious code pattern detected in skill scripts.

  • Malicious code pattern detected (high risk: 1.00). The content includes explicit, actionable instructions and payloads for exfiltrating sensitive data to external OOB servers (e.g., fetch(document.cookie) to interact.sh), automated match-and-replace injection rules that mass-deploy payloads across headers/params, and obfuscated/eval-style payload examples — all indicative of deliberate malicious/abusive behavior rather than purely benign documentation.
Audit Metadata
Risk Level
CRITICAL
Analyzed
Feb 24, 2026, 12:36 PM