social-media-osint
Fail
Audited by Snyk on Aug 2, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). This skill document provides explicit, actionable instructions for deanonymizing subjects, extracting geolocation and pattern-of-life data, and conducting covert interactions (sockpuppetry), which enable targeted surveillance and doxxing if misused.
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The required workflow ingests and analyzes publicly visible social media content by “Input: a profile URL or handle” and then “Capture… pinned posts” and “Work the posts for signal,” meaning outsider-authored free text from social posts/comments is read at runtime.
Issues (2)
E006
CRITICALMalicious code pattern detected in skill scripts.
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata