skills/cleodin/antigravity-awesome-skills/Cross-Site Scripting and HTML Injection Testing/Gen Agent Trust Hub
Cross-Site Scripting and HTML Injection Testing
Fail
Audited by Gen Agent Trust Hub on Apr 15, 2026
Risk Level: HIGHPROMPT_INJECTIONDATA_EXFILTRATIONCOMMAND_EXECUTION
Full Analysis
- [PROMPT_INJECTION]: The skill contains detailed instructions for exploitation and session hijacking, which can be interpreted as an attempt to direct the agent toward performing offensive operations that may violate safety guidelines.
- [DATA_EXFILTRATION]: The content features multiple functional templates for data exfiltration. Examples include payloads that capture "document.cookie" and keystrokes using "document.onkeypress", sending them to an external server ("attacker.com").
- [COMMAND_EXECUTION]: The skill provides guidance on using dynamic execution sinks and obfuscation methods. Evidence includes the use of "eval(atob(...))" and sinks like "Function()" and "setTimeout()" to execute hidden or encoded JavaScript code.
Recommendations
- AI detected serious security threats
Audit Metadata