xxe-prevention

Fail

Audited by Snyk on Aug 26, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E004: Prompt injection detected in skill instructions.

  • Potential prompt injection detected (critical risk: 1.00). The document includes explicit XXE attack payloads and active exploitation/testing instructions (file-disclosure and blind out‑of‑band exfiltration payloads, SSRF example, and curl/nc commands) that enable secret exfiltration.

CRITICAL E005: Suspicious download URL detected in skill instructions.

  • Suspicious download URL detected (critical risk: 1.00). The README contains an XXE example that causes an XML parser to fetch a remote DTD from an attacker-controlled URL (http://attacker.com/evil.dtd), i.e., an operational malicious download source used for exploitation.

Issues (2)

E004
CRITICAL

Prompt injection detected in skill instructions.

E005
CRITICAL

Suspicious download URL detected in skill instructions.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Aug 26, 2026, 12:25 AM
Issues
2
Security Audit — snyk — xxe-prevention