hunt-metrics-exposure
Fail
Audited by Snyk on Jul 31, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). This skill contains explicit reconnaissance and data-exfiltration guidance (probing /metrics and /actuator endpoints to harvest env/config and AI/model usage) and directs operators to pivot to exploitation (prompt injection, DoS), indicating intentional malicious intent.
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The skill’s required runtime workflow fetches free-text from attacker-controlled target endpoints (e.g., via
curlof/metrics,/actuator/health,/actuator/metrics, and/telescope/requestsinto files that are then grepped/parsed), so outsider-authored content can be ingested if an outsider can provide/post the HTTP responses or influence the target.
Issues (2)
E006
CRITICALMalicious code pattern detected in skill scripts.
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata