crlf-injection
Warn
Audited by Socket on Sep 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS/HIGH-RISK skill. The content is internally consistent with its stated purpose, but that purpose is to give an AI agent offensive exploit capability for CRLF injection and related attack chains. No installer or credential-harvesting behavior is present, so this is not confirmed malware, but it is a high-risk security/exploit skill inappropriate for general agent use.
Confidence: 95%Severity: 88%
Audit Metadata