transformer
Fail
Audited by Snyk on Mar 12, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E004: Prompt injection detected in skill instructions.
- Potential prompt injection detected (high risk: 0.90). The prompt contains a hidden shell-like instruction (!
cat ~/.claude/skills/prompt/SKILL.md) that attempts to read a local file—an exfiltration-style command unrelated to the skill's stated goal of rewriting skills, so it is a deceptive/out-of-scope instruction.
Issues (1)
E004
CRITICALPrompt injection detected in skill instructions.
Audit Metadata