pentest-exploit-execution-payload-control

Warn

Audited by Socket on Feb 19, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill explicitly enables generation of actionable exploit plans and reproducible commands for post‑exploitation proofing. While appropriate for authorized penetration tests, the lack of technical enforcement of authorization, target-scope, and safe-evidence handling makes it high risk if exposed to general or untrusted users. The document is not obfuscated and shows no direct malware artifacts, but its outputs can create or enable malicious activity. Treat this capability as dangerous by default and only enable it behind strict programmatic controls, attestations, and audit logging.

Confidence: 75%Severity: 80%
Audit Metadata
Analyzed At
Feb 19, 2026, 03:07 PM
Package URL
pkg:socket/skills-sh/crtvrffnrt%2Fskills%2Fpentest-exploit-execution-payload-control%2F@1042249f47fb985da532b0b0de6a4ebb167df708