certify
Fail
Audited by Snyk on Apr 16, 2026
Risk Level: CRITICAL
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 1.00). The prompt includes explicit commands that embed plaintext passwords/credentials on the command line (e.g., "Rubeus.exe ... /password:pass") and instructs exporting/using certificate passphrases, which requires the agent to handle and output secret values verbatim.
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). This content is an offensive tooling guide for abusing Active Directory Certificate Services (ESC1-ESC8) with explicit step‑by‑step commands to request certs for alternate UPNs and forge Kerberos tickets (via Rubeus), enabling privilege escalation and account takeover.
MEDIUM W013: Attempt to modify system services in skill instructions.
- Attempt to modify system services in skill instructions detected (high risk: 1.00). The prompt instructs active exploitation steps (requesting certificates for alternate admin UPNs, creating cert/pfx files, and using Rubeus to obtain/plant TGTs) which perform privilege escalation and modify system/auth state, so it encourages compromising the host/environment.
Issues (3)
W007
HIGHInsecure credential handling detected in skill instructions.
E006
CRITICALMalicious code pattern detected in skill scripts.
W013
MEDIUMAttempt to modify system services in skill instructions.
Audit Metadata