pentest-xss
Fail
Audited by Snyk on Feb 24, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). The content includes explicit, actionable instructions and payloads for exfiltrating sensitive data to external OOB servers (e.g., fetch(document.cookie) to interact.sh), automated match-and-replace injection rules that mass-deploy payloads across headers/params, and obfuscated/eval-style payload examples — all indicative of deliberate malicious/abusive behavior rather than purely benign documentation.
Audit Metadata