redirect-forge
Fail
Audited by Gen Agent Trust Hub on Aug 22, 2026
Risk Level: CRITICALCOMMAND_EXECUTIONDATA_EXFILTRATIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCREDENTIALS_UNSAFEPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides instructions for running numerous external security tools including
gau,waybackurls,katana,nuclei, anddalfoxto crawl and scan target domains for redirect parameters. - [DATA_EXFILTRATION]: The core methodology details how to steal OAuth authorization codes and access tokens by redirecting them to attacker-controlled infrastructure such as
ngrokor external listeners. - [EXTERNAL_DOWNLOADS]: The skill documentation recommends installing various third-party packages and tools (
requests,colorama,flask,openredirex) and includes references to an external script (https://analytics.third-party.com/track.js) flagged as malicious by automated scanners. - [REMOTE_CODE_EXECUTION]: The provided Python script
scripts/redirect_probe.pyperforms automated HTTP requests and header manipulation, and the guidereferences/oauth-redirect-guide.mdwas flagged by antivirus software for containing suspicious script content. - [CREDENTIALS_UNSAFE]: The OAuth guide and fuzzing script handle sensitive data such as authorization codes, access tokens, and
client_secretvalues, which are captured or transmitted during exploitation. - [PROMPT_INJECTION]: The skill provides payloads utilizing homoglyphs and zero-width characters to bypass security filters, and creates a surface for indirect prompt injection by ingesting and processing content from external web targets without sanitization.
Recommendations
- CRITICAL: 1 infected file(s) detected - DO NOT USE
- AI detected serious security threats
- Contains 1 malicious URL(s) - DO NOT USE
Audit Metadata