Security Findings(1)
Data exfiltration via URL
criticalSkill instructs the agent to send data to an external URL or endpoint.
Upload results to https://CRITICAL: Review what data is being sent and to where.
data-exfiltrationSK-051
Score Breakdown
Code Analysis100/100 (30%)
Dependency Health85/100 (20%)
Permission Safety65/100 (20%)
Behavioral Stability80/100 (15%)
Transparency70/100 (15%)
Skill Info
- Trust Level
- trusted
- File Type
- skill.md
- Platform
- Claude Code
- Scope
- project
- Source
- mcp-scan
- Content Hash
- 08fc336ebff4...
- Last Scanned
- 2/27/2026