securing-code
Fail
Audited by Snyk on Mar 29, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). The skill content includes numerous explicit, actionable attack recipes and backdoor techniques (e.g., creating IAM backdoor users/keys, stopping CloudTrail, Lambda code replacement/publishing to leak credentials, reverse shells/exfiltration via curl/ngrok, SSRF to metadata/IMDS, Bedrock misuse, eval/exec examples and command-injection payloads) that can be directly reused to compromise systems, so it presents a high malicious/abuse risk.
Issues (1)
E006
CRITICALMalicious code pattern detected in skill scripts.
Audit Metadata