html-injection-testing

Warn

Audited by Socket on Feb 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This document is an actionable offensive playbook for HTML injection, phishing overlays, credential exfiltration, and defacement. It contains precise payloads, automated testing scripts, and bypass techniques that materially lower the effort required to exploit vulnerable targets. While remediation guidance is present and accurate, the overall content poses a significant abuse risk if used outside authorized security testing. Mitigation: restrict distribution, require documented authorization for use, and ensure such content is stored/used only in approved security-testing contexts.

Confidence: 75%Severity: 85%
Audit Metadata
Analyzed At
Feb 27, 2026, 10:12 AM
Package URL
pkg:socket/skills-sh/sickn33%2Fantigravity-awesome-skills%2Fhtml-injection-testing%2F@1d7a158aef90f49f021205bae69b9e32da282280