Security payloads, bypass tables, wordlists, gf pattern names, always-rejected bug list, and conditionally-valid-with-chain table. Use when you need specific payloads for XSS/SSRF/SQLi/XXE/NoSQLi/command injection/SSTI/IDOR/path-traversal/HTTP smuggling/WebSocket/MFA bypass, or bypass techniques. Submittability and the always-rejected / what-NOT-to-submit decision are owned by triage-validation.
69
86%
Does it follow best practices?
Run evals on this skill
Adds up to 20 points to the overall score
View guide
Critical
Do not install without reviewing
Detected a prompt injection in the skill instructions. The skill contains hidden or deceptive instructions that fall outside its stated purpose and attempt to override the agent’s safety guidelines or intended behavior.
The document provides explicit exploit payloads and step-by-step instructions for secret exfiltration, cloud metadata access, command execution, and authentication/subversion techniques, constituting clearly harmful malicious guidance.
The skill handles credentials insecurely by requiring the agent to include secret values verbatim in its generated output. This exposes credentials in the agent’s context and conversation history, creating a risk of data exfiltration.
The skill contains payloads and example commands that exfiltrate or embed sensitive tokens/cookies (e.g., document.cookie exfiltration, cloud metadata endpoints, and curl headers with "Cookie=YOUR_SESSION"), which would require an LLM to include secret values verbatim if it filled placeholders or generated runnable commands—posing an exfiltration risk.
d4b54e1
If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.