hunt-auth-bypass
Fail
Audited by Snyk on Jul 31, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). The document contains explicit, actionable attack recipes for auth bypass (XMLRPC multicall, SAML signature-stripping/comment-injection, JWT alg attacks, token replay), instructions for credential stuffing and persistence (session-fixation + cron refresh), and scenarios describing exfiltration — techniques that are clearly usable for malicious account takeover and data theft.
Issues (1)
E006
CRITICALMalicious code pattern detected in skill scripts.
Audit Metadata