web-command-injection
Warn
Audited by Socket on Sep 20, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
High-risk offensive exploit skill. It is internally consistent with its stated purpose, but that purpose is to equip an AI agent to execute command injection attacks, verify compromise via timing/OOB channels, and exfiltrate proof from target systems. No clear malicious installer or credential theft is present, but the operational capability is dangerous and disproportionate for general agent use.
Confidence: 95%Severity: 94%
Audit Metadata