load-template

Fail

Audited by Snyk on Feb 16, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E005: Suspicious download URL detected in skill instructions.

  • Suspicious download URL detected (high risk: 0.90). The URL points to a raw GitHub-hosted shell script (load.sh) from a personal repository and is being recommended for direct curl|bash execution — a high-risk pattern because running remote .sh without reviewing its contents can execute arbitrary/malicious commands.

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).


MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).

Audit Metadata
Risk Level
CRITICAL
Analyzed
Feb 16, 2026, 12:43 PM