detecting-sql-injection-vulnerabilities
Warn
Audited by Socket on Apr 4, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
The skill is internally consistent and not overtly malicious: it reads local code, analyzes SQL injection risks, and writes reports. However, it is a high-risk security-audit capability for an AI agent because it combines untrusted code analysis with Bash execution and write access, so it should be treated as a powerful but legitimate offensive-security-adjacent tool rather than benign general-purpose documentation.
Confidence: 87%Severity: 68%
Audit Metadata