authbypass-authentication-flaws
Fail
Audited by Snyk on Apr 22, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). The document is an explicit offensive playbook containing step‑by‑step techniques for credential theft, account takeover, and token exfiltration (e.g., Host header injection to divert reset links, OAuth email-claim takeover, header/IP spoofing to bypass lockouts, token prediction/PRNG state recovery, and brute-force/credential‑stuffing guidance), which clearly enable deliberate malicious activity and data exfiltration.
Issues (1)
E006
CRITICALMalicious code pattern detected in skill scripts.
Audit Metadata