xxe-prevention
Fail
Audited by Snyk on Aug 26, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E004: Prompt injection detected in skill instructions.
- Potential prompt injection detected (critical risk: 1.00). The document includes explicit XXE attack payloads and active exploitation/testing instructions (file-disclosure and blind out‑of‑band exfiltration payloads, SSRF example, and curl/nc commands) that enable secret exfiltration.
CRITICAL E005: Suspicious download URL detected in skill instructions.
- Suspicious download URL detected (critical risk: 1.00). The README contains an XXE example that causes an XML parser to fetch a remote DTD from an attacker-controlled URL (http://attacker.com/evil.dtd), i.e., an operational malicious download source used for exploitation.
Issues (2)
E004
CRITICALPrompt injection detected in skill instructions.
E005
CRITICALSuspicious download URL detected in skill instructions.
Audit Metadata