crack

Fail

Audited by Snyk on Mar 7, 2026

Risk Level: CRITICAL
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 1.00). The workflow explicitly instructs the agent to extract, record, and report recovered cleartext passwords (secrets) in the summary, requiring the LLM to output secret values verbatim.

CRITICAL E006: Malicious code pattern detected in skill scripts.

  • Malicious code pattern detected (high risk: 1.00). This skill explicitly guides identifying and cracking password hashes (NTLM, /etc/shadow, web hashes, archives) using offensive tools (john, hashcat, unshadow, Mimikatz references) and lacks authorization/scope checks, so it facilitates credential theft and system compromise.
Audit Metadata
Risk Level
CRITICAL
Analyzed
Mar 7, 2026, 12:15 PM