testing-for-email-header-injection
Warn
Audited by Socket on Mar 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The skill is internally consistent as a penetration-testing guide, but it equips an AI agent with explicit offensive security procedures that can exploit real email systems, relay spam, and siphon email copies or reset tokens. Install trust is low concern; the primary risk is enabling active exploitation.
Confidence: 93%Severity: 86%
Audit Metadata