cot-injection

Warn

Audited by Socket on May 4, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent, but its stated purpose is offensive exploitation of AI agents. It provides high-risk attack guidance for prompt injection, approval bypass, and query manipulation aimed at unauthorized actions and data access, even though it contains no installer, credential, or external data-routing behavior.

Confidence: 95%Severity: 88%
Audit Metadata
Analyzed At
May 4, 2026, 08:16 AM
Package URL
pkg:socket/skills-sh/wgpsec%2FAboutSecurity%2Fcot-injection%2F@0c8e2bcedcb1b2a9f605e501d39cae22db55606c