Finding Categories

Security findings organized into 13 categories. Click any category to see affected skills.

external-download

1,116

Skills that download or reference external files, URLs, or resources

prompt-injection

905

Skills with patterns that could enable prompt injection attacks

mcp-config

405

MCP server configuration issues or insecure defaults

exfiltration

400

Skills with patterns that could leak sensitive data to external endpoints

ssrf-cloud

259

Server-side request forgery risks targeting cloud metadata or internal services

supply-chain

193

Supply chain risks: typosquatting, dependency confusion, or untrusted packages

mcp-attack

185

MCP protocol abuse: tool poisoning, rug pulls, or cross-origin attacks

command-execution

142

Skills that execute shell commands, system calls, or subprocess operations

indirect-injection

95

Indirect prompt injection via external data sources

credential-leak

81

Skills that handle, expose, or hardcode credentials and secrets

toxic-flow

70

Multi-step flows that combine benign tools into dangerous chains

third-party-content

3

Skills that load or embed untrusted third-party content

unicode-attack

1

Unicode/homoglyph tricks used to obfuscate malicious content