CtrlK
BlogDocsLog inGet started
Tessl Logo

lfi

Path traversal and Local File Inclusion (LFI) — arbitrary file reading via directory traversal, PHP filter/input/data wrappers for RCE, log poisoning, static resource disclosure, and information leakage. Use for any challenge involving file path manipulation, ../ traversal, local file read, PHP wrappers, or sensitive file disclosure.

74

Quality

93%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Critical

Do not install without reviewing

SKILL.md
Quality
Evals
Security

Quality

Content

88%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

An exceptionally actionable, workflow-driven skill: concrete probes, explicit diagnostic ordering, mandatory verification gates, and pivot discipline that anticipate known agent failure modes (false-positive 200s, iterating dead vectors). The two moderate weaknesses are repetition of payload classes across sections and a monolithic single-file structure where the nginx-alias and Protected-LFI deep-dives could be split into reference files.

DimensionReasoningScore

Conciseness

Nearly every token is an executable command, payload, or decision rule — there is no padding and no explanation of concepts Claude already knows (the "Why it works" nginx-alias derivation is genuinely specialized). However, payload classes recur across sections: "....//....//....//etc/passwd" appears in Detection, Bypass Techniques, the Decision Tree, and the Protected-LFI section, and log poisoning is documented three times. This fits "efficient; minor instances ... that could be trimmed" (4) rather than level 5's "every token earns its place".

4 / 5

Actionability

Every technique is given as copy-paste-ready curl/bash with concrete payloads (plain, URL-encoded, double-encoded, null-byte, Windows backslash, "....//" stripping bypass, php://filter chains, log/session poisoning) plus grep-based PASS/FAIL checks against saved responses. Placeholders like <TARGET> and <PARAM> are simple substitutions, so the guidance is fully executable and covers the common cases — the level 5 anchor.

5 / 5

Workflow Clarity

The body provides an explicit Decision Tree, a mandatory Probe A/A2/B/C diagnostic ordering for protection classes, the STEP W1 wrapper-availability gate with an explicit failure branch ("jump to W5"), and a MANDATORY Response Body Verification step with baseline-size comparison, file-signature greps, and a known-content control file (etc/hostname). This is a clear sequence with explicit validation steps, error-recovery feedback loops, and pivoting rules — the level 5 anchor; it exceeds level 4, whose checkpoints would only be "mostly" present.

5 / 5

Progressive Disclosure

This is a single-file skill (no references/, scripts/, or assets/ exist) with well-signaled sections and an internal decision tree for navigation. Structure is good, but at ~320 lines the deep-dive material (the nginx alias off-by-slash analysis and the ~90-line Protected LFI Escalation Rule) would arguably live better in one-level-deep reference files, leaving SKILL.md as a leaner overview. That fits "good structure; most content appropriately placed; minor organization gaps" (4) rather than level 5's cleanly split content.

4 / 5

Total

18

/

20

Passed

Description

96%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong description that explicitly answers both what the skill does and when to use it, with a rich set of natural trigger terms including the literal "../" payload. The only weakness is that the broadest tail triggers (information leakage, sensitive file disclosure) slightly widen the trigger surface beyond the LFI niche, creating minor overlap risk with adjacent disclosure-focused skills.

DimensionReasoningScore

Specificity

The description enumerates multiple concrete actions — "arbitrary file reading via directory traversal, PHP filter/input/data wrappers for RCE, log poisoning, static resource disclosure, and information leakage" — comprehensively covering read primitives, RCE escalation, and disclosure. This matches the anchor for multiple specific concrete actions with comprehensive coverage; it exceeds level 4 because the action list spans the full capability set of the skill rather than leaving minor gaps.

5 / 5

Completeness

The "what" is explicit ("arbitrary file reading via directory traversal, PHP filter/input/data wrappers for RCE, log poisoning, static resource disclosure, and information leakage") and the "when" is an explicit trigger clause ("Use for any challenge involving file path manipulation, ../ traversal, local file read, PHP wrappers, or sensitive file disclosure"). Both halves are stated with concrete trigger phrases, matching the level 5 anchor exactly.

5 / 5

Trigger Term Quality

Natural trigger terms include "Local File Inclusion (LFI)", "Path traversal", "directory traversal", "file path manipulation, ../ traversal, local file read, PHP wrappers" — covering synonyms and the literal "../" payload string a user would actually type. Level 4 would require a few missing natural terms, but the coverage here includes both full names and their common shorthand variants.

5 / 5

Distinctiveness Conflict Risk

The core niche (LFI, path traversal, "../") is clearly distinct, but the tail triggers "static resource disclosure, and information leakage" and "sensitive file disclosure" could fire for generic information-disclosure tasks that do not involve path manipulation, creating minor overlap with a closely related disclosure skill. This fits "mostly distinct; minor overlap risk" (4) rather than level 5's "minimal conflict risk", and is well above level 3's ambiguity.

4 / 5

Total

19

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

metadata_version

'metadata.version' is missing

Warning

Total

15

/

16

Passed

Repository
PurpleAILAB/Decepticon
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.