api-security

Fail

Audited by Snyk on Feb 27, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E006: Malicious code pattern detected in skill scripts.

  • Malicious code pattern detected (high risk: 1.00). The document contains explicit, actionable attack techniques that enable credential theft and data exfiltration (e.g., SSRF to cloud metadata, command-injection payloads, JWT JKU/X5U hosting of malicious JWKS), plus instructions for remote exploitation and automated scanning—patterns that can be deliberately abused as backdoors or for malicious access.

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
CRITICAL
Analyzed
Feb 27, 2026, 08:02 AM