seoul-bike

Fail

Audited by Snyk on Jun 13, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E006: Malicious code pattern detected in skill scripts.

  • Malicious code pattern detected (high risk: 1.00). This skill deliberately sends user queries — including precise coordinates and realtime station requests — to a default external proxy (https://k-skill-proxy.nomadamas.org), which is a clear data-exfiltration / privacy risk; aside from that proxy usage there are no obfuscated payloads, eval/exec, remote shells, credential-stealing routines, or other hidden backdoor behaviors in the code.

Issues (1)

E006
CRITICAL

Malicious code pattern detected in skill scripts.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Jun 13, 2026, 12:54 AM
Issues
1
Security Audit — snyk — seoul-bike