Pentest Methodology
Fail
Audited by Snyk on Apr 11, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). Although presented as an ethical pentest guide with authorization disclaimers, the content contains explicit, actionable instructions for reverse shells, payload generation (msfvenom/meterpreter), OS shells (sqlmap), brute-force/cracking (hydra/john), exploitation modules (EternalBlue, MS08-067, etc.), and persistence techniques—patterns that directly enable unauthorized access, credential theft, data exfiltration, and backdoors.
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's required recon workflow (SKILL.md and references/methodology.md Phase 1: "Reconnaissance" / "Google Hacking" and "Social Media Reconnaissance") explicitly directs gathering and interpreting OSINT from public websites and social media (LinkedIn, Twitter, Facebook) and running tools that fetch public content, so untrusted third‑party material could influence subsequent scanning/exploitation decisions.
MEDIUM W013: Attempt to modify system services in skill instructions.
- Attempt to modify system services in skill instructions detected (high risk: 0.70). The skill explicitly guides running exploit and post‑exploitation activities (privilege escalation, persistence), generating payloads, and capturing traffic—actions that can modify or persist on the host—so it encourages state‑changing, potentially harmful operations even though it doesn't explicitly say "run sudo" or "create local users."
Issues (3)
E006
CRITICALMalicious code pattern detected in skill scripts.
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
W013
MEDIUMAttempt to modify system services in skill instructions.
Audit Metadata