llm-prompt-injection

Warn

Audited by Socket on Jul 21, 2026

2 alerts found:

SecurityAnomaly
SecurityMEDIUM
SKILL.md

This is a coherent offensive security playbook rather than a deceptive skill: its content matches its stated purpose, and it does not install software or directly exfiltrate data. However, it equips an AI agent with high-risk prompt-injection and tool-abuse techniques, so it should be treated as a high-risk security-testing skill, not malware.

Confidence: 92%Severity: 76%
AnomalyLOW
JAILBREAK_PATTERNS.md

No evidence of traditional malware or supply-chain compromise exists in this module because it contains no executable behavior, I/O, networking, or credential/process access. However, the file is a highly actionable jailbreak/prompt-injection techniques catalog (including system-prompt extraction and escalation/encoding bypass patterns). Its primary risk is enabling abusive instruction crafting and increasing the likelihood of safety bypasses in downstream LLM deployments, especially if included in applications that generate or validate prompts.

Confidence: 78%Severity: 58%
Audit Metadata
Analyzed At
Jul 21, 2026, 01:25 PM
Package URL
pkg:socket/skills-sh/strivepan-svg%2Fhack-skills%2Fllm-prompt-injection%2F@7ca39b416c5b079883e607dceb57e2d9aa36c841603240b3ded4fd934c2febb4
Security Audit — socket — llm-prompt-injection