← Insecure Output Handling

Challenge: Name the Sink

⚠️ Flags are recovered inside isolated labs. Submission is verified server-side.

Model output is rendered into a markdown component that auto-fetches remote images. Beyond XSS, this enables a second impact class named in the lesson. Submit it as a 2-word phrase.

Mystery challenge — the vulnerability class is deliberately withheld.

Hint: Think about what the fetch carries *out*. HA{..._exfiltration}

Submit flag loading…