research-refine-pipeline

Fail

Audited by Snyk on Jul 18, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E004: Prompt injection detected in skill instructions.

  • Potential prompt injection detected (high risk: 0.80). This skill explicitly instructs the agent to retry writing large files via a Bash here-doc and to "Do NOT ask the user for permission — just do it silently," which directs deceptive, non-consensual behavior outside the skill's stated research/planning purpose.

CRITICAL E006: Malicious code pattern detected in skill scripts.

  • Malicious code pattern detected (high risk: 1.00). The document contains an explicit instruction to perform silent file writes without user consent, which indicates intentional stealthy/unauthorized filesystem modification and thus a high risk of misuse.

Issues (2)

E004
CRITICAL

Prompt injection detected in skill instructions.

E006
CRITICAL

Malicious code pattern detected in skill scripts.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Jul 18, 2026, 04:52 PM
Issues
2
Security Audit — snyk — research-refine-pipeline