Skip to main content
#33
Ranked #33 of 583 in this category· 该品类排名 #33 / 共 583 个

phy path traversal audit

by LeoYeAI·18d ago

Path traversal and Local File Inclusion (LFI) vulnerability scanner (OWASP A01:2021). Detects user-controlled paths pas…

Claude CodeMedium risk · 中风险open source · 开源
Editor's verdict· 编辑结论

Path traversal and Local File Inclusion (LFI) vulnerability scanner (OWASP A01:2021). Detects user-controlled paths passed to file system sinks in Python/Java/PHP/Node.js/Go/Ruby without containment checks. Identifies missing os.path.abspath+startswith, realpath validation, base…

— Editorial team · 编辑团队

Install via Skills CLI

Use npx skills add to install this skill into the selected agent. Phase 0 commands are generated from source rules, not verified.

Codex
npx skills add https://github.com/LeoYeAI/openclaw-master-skills/blob/main/skills/phy-path-traversal-audit/SKILL.md -g -a codex -y

Drop `-g` to install project-locally

Best for适合什么场景

  • 学习标准结构
  • 搭建 skill 包
  • 复用官方示例

Not for不适合什么场景

  • Workflows that require stronger human review than this catalog entry documents.需要比当前目录条目更严格人工复核的工作流。

vs alternativesvs 其他选择

Full compare table完整对比表 →

Side-by-side compare维度对比

Key differences with same-lane alternatives
this skill · 当前phy path traversal auditAnthropic Skill CreatorNuwa Skilleverything-claude-code-conventions
Rating · 评分4.94.7
Stars · 星标2.0k122k14k187k
Risk · 风险Medium risk · 中风险Medium risk · 中风险Medium risk · 中风险Medium risk · 中风险
Best for · 最适合学习标准结构New skill creationDistill how a person thinks into a reusable skill.Development conventions and patterns for everything-claude-code. JavaScript project with conventional commits.
Not for · 不适合Workflows that require stronger human review than this catalog entry documents.One-off task automationWorkflows that require stronger human review than this catalog entry documents.Workflows that require stronger human review than this catalog entry documents.

Audit notes审计备注

last reviewed 2026-06-03 · 复查
Source源码open on GitHub · 公开
Author作者community · 社区!
Network网络访问network access · 需联网
Filesystem文件写入writes to repo · 写入仓库!
Dependencies依赖many deps · 依赖较多
Telemetry遥测none · 无
Skill Market
Find the best AI skills for the job·按品类找最好用的 AI 技能
v0.4 · 1252 skills indexed · last review 2026-06-03