fort-firewall-malware-repository-detection
Fail
Audited by Snyk on Jul 5, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E005: Suspicious download URL detected in skill instructions.
- Suspicious download URL detected (high risk: 1.00). Most links are legitimate security or vendor resources, but the repository BinayRAj-boop/fort-firewall-security-fix and its GitHub Pages (binayraj-boop.github.io/fort-firewall-security-fix/) show multiple high-risk indicators (crack/patch keywords, GitHub Pages redirect instead of signed GitHub Releases, likely social-engineering instructions) and therefore represent a suspicious/malicious download source that could distribute malware.
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). The skill’s runtime workflow ingests the repository’s own README text (e.g.,
repo_data.get('readme', '')/open('README.md').read()), which is outsider-authored content from the malicious GitHub repoBinayRAj-boop/fort-firewall-security-fix(not the operating user’s), creating an indirect prompt-injection path via that free-form README text.
Issues (2)
E005
CRITICALSuspicious download URL detected in skill instructions.
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata