prompt-engineering
Fail
Audited by Snyk on Feb 16, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E005: Suspicious download URL detected in skill instructions.
- Suspicious download URL detected (high risk: 0.90). They point to an unknown .sh domain and a cloud file URL and the skill explicitly tells you to curl | sh (execute a remote shell script), which is a high-risk pattern for distributing malware or running untrusted code.
Audit Metadata