deserialization-insecure
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [NO_CODE]: The skill consists entirely of Markdown reference playbooks (
SKILL.mdandJAVA_GADGET_CHAINS.md) providing guidance on insecure deserialization vulnerabilities across multiple programming languages. There are no executable files, installation scripts, or software dependencies included. - [SAFE]: All code blocks and command snippets contained within the documentation are standard placeholders and testing examples for security verification purposes (e.g., using
ysoserialorPHPGGCcommands). No malicious prompt injections, obfuscated URLs, or data exfiltration risks are present.
Audit Metadata