sqlmap-database-pentesting
Fail
Audited by Snyk on Jun 25, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). High risk — this is an explicit, actionable SQL injection exploitation guide that enables data exfiltration (db/table/column dumps, password/hash extraction), credential theft, remote code execution and backdoor installation (--os-shell, --os-cmd, --file-write), evasion (tamper scripts, --random-agent, --tor), and mass scanning (bulk files, Google dorks), all of which facilitate unauthorized compromise if used maliciously.
MEDIUM W013: Attempt to modify system services in skill instructions.
- Attempt to modify system services in skill instructions detected (high risk: 1.00). The skill provides step-by-step instructions to perform active SQL injection exploitation (data dumps, OS shell, file-read/file-write, file upload, and remote OS command execution) which directly enable modifying and compromising target systems — including the host the agent runs on if targeted — so it clearly pushes state-changing, high-risk actions.
Issues (2)
E006
CRITICALMalicious code pattern detected in skill scripts.
W013
MEDIUMAttempt to modify system services in skill instructions.
Audit Metadata