touch-recon

Fail

Audited by Snyk on Jul 1, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E006: Malicious code pattern detected in skill scripts.

  • Malicious code pattern detected (high risk: 1.00). This skill explicitly states it is for "takeover" and provides targeted reconnaissance commands to enumerate project files (package.json, Podfile, build.gradle, CI configs) and locate sensitive credentials/configs — indicating deliberate malicious reconnaissance enabling data exfiltration, credential theft, and supply‑chain abuse.

Issues (1)

E006
CRITICAL

Malicious code pattern detected in skill scripts.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Jul 1, 2026, 02:48 PM
Issues
1
Security Audit — snyk — touch-recon