ctf-forensics

Warn

Audited by Socket on Apr 5, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill, not confirmed malware. Its purpose and capabilities are internally coherent for CTF forensics, and installs use normal registries, but it equips an AI agent with substantial offensive-security and credential-recovery workflows that can be misapplied outside CTF contexts. Main concern is operational misuse and broad execution scope, not hidden exfiltration or deceptive data flows.

Confidence: 87%Severity: 72%
Audit Metadata
Analyzed At
Apr 5, 2026, 02:08 PM
Package URL
pkg:socket/skills-sh/chi111i%2Fctf-skills%2Fctf-forensics%2F@0f42f5e74aab8a17c5ee19c02a5279e92852f295