pyexfil

Fail

Audited by Snyk on Apr 16, 2026

Risk Level: CRITICAL
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 1.00). The prompt explicitly instructs reading sensitive files (e.g., open('secrets.txt','rb').read()) and sending their contents over covert channels, which requires the agent to handle and transmit secret values verbatim for exfiltration.

CRITICAL E006: Malicious code pattern detected in skill scripts.

  • Malicious code pattern detected (high risk: 1.00). This package is explicitly designed to perform covert, multi-channel data exfiltration (including examples that send arbitrary files and microphone captures to attacker-controlled endpoints) and contains documentation about detection evasion, so it is intentionally abuse-capable and high risk.

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 1.00). The skill explicitly instructs reading local files and sending them out over covert channels (data exfiltration), which actively compromises the machine’s security and enables unauthorized disclosure even if it doesn’t request sudo or change system files.

Issues (3)

W007
HIGH

Insecure credential handling detected in skill instructions.

E006
CRITICAL

Malicious code pattern detected in skill scripts.

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Apr 16, 2026, 08:21 PM
Issues
3
Security Audit — snyk — pyexfil