PromptInjection

Warn

Audited by Socket on Mar 5, 2026

1 alert found:

Anomaly
AnomalyLOW
Workflows/MultiStageAttacks.md

This document is a clear attack/playbook describing multi-stage prompt-injection and social-engineering techniques aimed at causing conversational AI to disclose system prompts or perform unauthorized actions. It is not obfuscated code or an executable malware artifact, but it is actionable guidance that raises a moderate to high security concern for any conversational AI that retains multi-turn context, ingests user-supplied documents, or accepts role-play-style prompts. Use of this document in testing should only occur under strict authorization and controlled environments; it can be abused to bypass guards and exfiltrate sensitive instructions.

Confidence: 90%Severity: 60%
Audit Metadata
Analyzed At
Mar 5, 2026, 07:41 AM
Package URL
pkg:socket/skills-sh/steffen025%2Fpai-opencode%2Fpromptinjection%2F@70f496df6773379265fc4dd089fabb27c083f9a1