llm-prompt-injection
Audited by ZeroLeaks on Apr 16, 2026
This skill looks risky overall, with medium confidence. The skill has 3 transparency concerns that weaken pre-use reviewability, mainly around obfuscated or encoded execution path and remote script execution without review boundary. The scanned skill keeps data and instructions reasonably separate and does not strongly encourage the agent to treat external content as policy. Behavior analysis was not run.
The skill has 3 transparency concerns that weaken pre-use reviewability, mainly around obfuscated or encoded execution path and remote script execution without review boundary.
The scanned skill keeps data and instructions reasonably separate and does not strongly encourage the agent to treat external content as policy.
Behavior analysis was not run.
Remote script execution without review boundary
Obfuscated or encoded execution path
Hidden or dense payload-like content