flags-sdk

Warn

Audited by ZeroLeaks on Apr 15, 2026

Risk Level: HIGH
Scan Summary

This skill is flagged AT_RISK due to two concrete concerns. First, transparency is weakened by what appears to be a hardcoded credential and an obfuscated or encoded execution path in SKILL.md, making it harder to fully review what the skill actually does before loading it. Second, and more critically, the skill weakens instruction/data boundaries by treating untrusted external content as policy-level input, which materially increases prompt-injection risk compared to a no-skill baseline. Behavior analysis was not run, so downstream behavioral impact remains unvalidated, but the prompt-injection finding alone is sufficient to warrant caution—this skill does materially worsen the agent's security posture in tested scenarios.

Score
51/100
Verdict
AT_RISK
Confidence
medium
Findings
3
Section Analysis (3)
TransparencyAT_RISK
39/100

The skill has 2 transparency concerns that weaken pre-use reviewability, mainly around potential hardcoded credential and obfuscated or encoded execution path.

Prompt InjectionWARNING
57/100

The skill increases prompt injection risk by weakening trust boundaries around untrusted external content treated as policy.

Agent BehaviorSkipped

Behavior analysis was not run.

Findings (3)
CRITICAL

Potential hardcoded credential

CRITICAL

Untrusted external content treated as policy

HIGH

Obfuscated or encoded execution path

Coverage DetailsClick to expand
Discovered Files
1
Omitted Files
0
Analyzed Bytes
13.5 KB
Sections Completed
2
Sections Skipped
1
Behavior Probes
0/0
Audit Metadata
Score
51/100
Verdict
AT_RISK
Confidence
medium
Sections
2/3 completed
Findings
3
Mode
risk
Files Scanned
1
Duration
104.3s
Analyzed
Apr 15, 2026, 10:23 PM
Security Audit — zeroleaks — flags-sdk