path-traversal-lfi
Warn
Audited by Socket on Jul 21, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS/HIGH-RISK skill. Its actual footprint is an AI-agent offensive exploitation manual with explicit file theft and RCE escalation guidance, plus related-skill chaining. There is little sign of credential harvesting by the publisher, so it is not confirmed malware, but it is clearly inappropriate for general agent use and materially increases attack capability.
Confidence: 94%Severity: 93%
Audit Metadata