threat-hunting

Fail

Audited by Socket on Mar 7, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The threat-hunting skill is coherently aligned with its stated defensive purpose. It emphasizes legitimate, enterprise-grade forensic tooling and analytics (Volatility, Zeek, Plaso, Sigma, Elasticsearch) and describes typical data flows from data collection to alerting and reporting. The footprint is proportionate to a blue-team capability; no unverifiable binaries or suspicious external data exfiltration patterns are evident. Minor improvements recommended: explicit data governance (retention, access controls, audit logs), secure handling of credentials, and explicit validation/sanitization steps in multi-tool pipelines.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 7, 2026, 05:45 PM
Package URL
pkg:socket/skills-sh/alphaonedev%2Fopenclaw-graph%2Fthreat-hunting%2F@2821125c3749dabd6877cc944cc032e172d6f99f