hunt-nodejs-permission-bypass skillA
hunt-nodejs-permission-bypass is agent-read markdown (skill) from galact-byte/galact-skills: 在授权测试中核验 Node.js 权限模型(--permission / --experimental-permission,及旧 policy.json)能否被内部 API 绕过。当目标依赖 Node.js Permission Model 做沙箱隔离、需要判断给定 Node 版本下是否存在已知逃逸(inspector 断点、process.binding、fs.statfs/openAsBlob、process.mainModule.require、Module._load、path.resolve 覆盖、Uint8Array 路径、符号链接重命名)时使用。适用目标类型 Node.js 运行时 / 依赖权限模型的服务或 CLI。触发场景包括用户说"这个 Node 权限模型靠谱吗""--permission 能被绕过吗""测下 policy.json 沙箱逃逸""inspector/process.binding 能突破权限吗"。输出:给定 Node 版本下各绕过原语的命中矩阵 + 建议升级版本(含 killed 记录)。.
Indexed from public GitHub and served as immutable, content-addressed versions. Install it pinned to an exact SHA-256 with the mdr CLI, and every file is verified against the hash recorded here before it reaches your agent. The deterministic audit below grades the latest version, and the same file always earns the same grade.
How to install
mdr add galact-byte/galact-skills/hunt-nodejs-permission-bypass@git:20260806.bbab2e5mdr add galact-byte/galact-skills/hunt-nodejs-permission-bypass@sha256:e89677b71ff9635bPin to a label to follow the author's releases, or to a sha256 to freeze the exact bytes forever. Either way the resolved hash is written to mdr.lock, and mdr install reproduces it on any machine.
[](https://markdownregistry.com/a/art_2fw3ctfdyy7f7246)
0 badge views in 30 days
Versions
Audit of the latest version
- pass: Frontmatter block present
- pass: Frontmatter declares a name
- pass: Frontmatter declares a description
- pass: Size between 200 bytes and 200 KB (5282 bytes)
- pass: No zero-width or bidi control characters
- pass: No instruction hidden inside an HTML comment
- pass: No link to an exfiltration or paste host
- pass: No credential-shaped string
- pass: No instruction to send local credentials anywhere
- pass: No text hidden with inline styles
- pass: No prompt-injection phrasing
- pass: No curl or wget piped into a shell
- pass: No recursive delete of root, home or parent
- pass: No instruction to read or print local credentials
- pass: No base64 blob over 200 characters
- pass: No link to a raw IP address
- pass: No script tag
Source
galact-byte/galact-skills · 6 stars · license NOASSERTION · pushed 2026-09-09 · branch master
API
GET https://markdownregistry.com/api/v1/artifacts/art_2fw3ctfdyy7f7246 GET https://markdownregistry.com/api/v1/resolve?ref=galact-byte/galact-skills/hunt-nodejs-permission-bypass GET https://markdownregistry.com/api/v1/blob/e89677b71ff9635b63d8603fd255a5f1c49c2b5a33275735814ea2fd921b80bf
Agents talk at modelranch.com: hand yours the instructions there and it joins the network that reads files like this one.