Skip to main content

testing-for-crlf-injection

Testing web applications for CRLF (Carriage Return / Line Feed) injection where unsanitized %0d%0a sequences in user input let an attacker inject HTTP headers, split responses, poison caches, plant cookies, or pivot to XSS and request smuggling. Activates when user input is reflected into response headers, Location redirects, log files, or outbound requests made by the application.

Jump to install

Source facts

Repository
xalgord/xalgorix
Last source activity
June 6, 2026 at 16:41
Detected SKILL.md language
English
Stars
813
Forks
146

Install options

The review-first prompt is selected by default. You can switch to a direct command or download a local copy.

Review the source files

Read SKILL.md and any companion files shown by SkillsMP before deciding whether to install.