transilienceai/communitytools139 installs
patt-fetcher
Fetches and extracts payloads from PayloadsAllTheThings on demand. Bake into executor prompts for live payload enrichment.
How do I install this agent skill?
npx skills add https://github.com/transilienceai/communitytools --skill patt-fetcherIs this agent skill safe to install?
- Gen Agent Trust Hubpass
The skill fetches security research payloads from a public GitHub repository. While functional for security testing, it creates a surface for indirect prompt injection by ingesting unvalidated external content into the agent's workflow.
- Socketwarn
1 alert: gptSecurity
- Snykwarn
Risk: MEDIUM · 1 issue
What does this agent skill do?
PATT Fetcher
Fetches payloads from PayloadsAllTheThings on demand. Use model="haiku" when spawning for lightweight operation.
URL Map
Workflow
- Match category to URL Map (case-insensitive)
- WebFetch the raw URL
- Find first H2 heading matching query → return up to 100 lines
- Return extracted payloads to caller
Error Handling
- 404: PATT may have restructured — check https://github.com/swisskyrepo/PayloadsAllTheThings
- Rate limit: Back off and retry; if persistent, note the category as unavailable and proceed with built-in payloads
- Unknown category: Ask caller for direct raw URL
How can the creator link this skill?
Add the canonical catalog link to the repository README so users can inspect current installs and available audits. The publishing guide covers the complete discovery path.
<a href="https://skillzs.dev/skills/transilienceai/communitytools/patt-fetcher">View patt-fetcher on skillZs</a>