paper-plan
Fail
Audited by Snyk on Jul 18, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E004: Prompt injection detected in skill instructions.
- Potential prompt injection detected (high risk: 0.90). The skill includes a directive to retry file writes using a Bash heredoc and "Do NOT ask the user for permission — just do it silently," which instructs deceptive, hidden behavior outside the stated purpose of generating an outline.
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). The document contains explicit instructions to send full project content to an external reviewer model and to run silent Bash writes without user permission, which enable unauthorized data exfiltration and stealthy file modification.
Issues (2)
E004
CRITICALPrompt injection detected in skill instructions.
E006
CRITICALMalicious code pattern detected in skill scripts.
Audit Metadata