The skill uses keyword stuffing for unauthorized discovery and executes unconstrained system commands or network requests without declaring necessary tools, posing a significant risk of arbitrary code execution.
npx skills add https://github.com/zxzin/zinxtickDescription contains a long keyword list that may be designed to trigger the skill for unrelated queries.
Skill does not specify a license field. Specifying a license helps users understand usage terms.
[](https://mondoo.com/ai-agent-security/skills/github/zxzin/zinxtick)<a href="https://mondoo.com/ai-agent-security/skills/github/zxzin/zinxtick"><img src="https://mondoo.com/ai-agent-security/api/badge/github/zxzin/zinxtick.svg" alt="Mondoo Skill Check" /></a>https://mondoo.com/ai-agent-security/api/badge/github/zxzin/zinxtick.svgSkills can read files, run commands, and access credentials. Mondoo helps organizations manage the security risks of AI agent skills across their entire fleet.