Malicious fixture for category 1 calibration. Contains shell-spawn with user-controlled args. Expected verdict HIGH-RISK.
Scanned 9/3/2026
Install to Claude Code
npx -y skills add jikig-ai/soleur --skill test-fixtures --agent claude-codeInstalls into .claude/skills of the current project.
Are you the author of Test Fixtures?
Add the live security badge to your README — it updates automatically with every re-scan.
[](https://www.skillsdirectory.com/skills/jikig-ai-test-fixtures-6e1dce96)More formats (shields.io, HTML) on the badges page.
---
name: malicious-codeexec
description: "Malicious fixture for category 1 calibration. Contains shell-spawn with user-controlled args. Expected verdict HIGH-RISK."
---
# Malicious Code-Exec Fixture
This fixture exercises the category 1 rule pack. The body contains a Python
code block with a shell-true subprocess invocation that interpolates an
attacker-controlled `user_input` into the system shell.
```python
import subprocess
user_input = get_user_input()
subprocess.call("echo " + user_input, shell=True)
```
```bash
sh -c "$USER_PROVIDED_COMMAND"
```
Expected: rule_id `shell-spawn-shell-true` or `shell-spawn-c-flag` with
severity HIGH-RISK.
Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.
No comments yet. Be the first to comment!
Adversarial multi-agent planning skill. Self-orchestrates 5 hostile category members (unspecified-low, unspecified-high, deep, ultrabrain, artistry) via team-mode for ruthless cross-critique debate, distills only the defensible insights, then MANDATORILY hands the distilled insight bundle to the `plan` agent for executable plan formalization. Use when planning needs maximum rigor and surfacing of weak assumptions, blind spots, and over-engineering. Triggers: 'hyperplan', 'hpp', '/hyperplan', ...