web-test
Fail
Audited by Snyk on Jun 24, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). This code deliberately exposes an HTTP /exec endpoint that builds and runs an AsyncFunction from the POST body (with file I/O and browser controls available), creating an explicit remote code execution vector that can be used to read files, steal secrets or exfiltrate data if the server becomes reachable.
Issues (1)
E006
CRITICALMalicious code pattern detected in skill scripts.
Audit Metadata