AI Insecure Output Handling

Exploit apps that trust LLM output — pass model text unsanitized into XSS sinks, SQL, shell, code, or downstream calls. Load when LLM output is rendered as HTML/markdown, executed, or fed to another system. Signals: chatbot output shown with innerHTML/dangerouslySetInnerHTML, "run this code", LLM-generated queries/commands, agent output used in eval/exec.

NoorQureshi Updated

File contents

NoorQureshi/SploitAgent/tree/main/skills/ai-ml/ai-insecure-output-handling commit 4cb3da8d3e

Frequently asked questions

npx skillmds@latest add noorqureshi/ai-insecure-output-handling