pentest

Warn

Audited by Socket on Apr 30, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its purpose is explicitly offensive security, and it equips the agent to run real scans and exploitation-oriented tooling against external targets. The largest concerns are the autonomous pentest capability and the broad supply-chain trust placed in many unrelated, unpinned third-party Docker images and wrappers; this fits the skill’s purpose, so it is not deceptive malware, but it is a high-risk security capability that should not be treated as benign.

Confidence: 90%Severity: 90%
Audit Metadata
Analyzed At
Apr 30, 2026, 09:52 PM
Package URL
pkg:socket/skills-sh/AKCodez%2Fhackingtool-plugin%2Fpentest%2F@0ee59c8fc685a426bcae9a84006a331bdb94c642