pentest-outbound-interaction-oob-detection

Warn

Audited by Socket on Apr 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent as a pentest/OOB validation skill, but its core function is to equip an AI agent with offensive security capabilities and external callback collection. There is no clear credential harvesting or malicious installer behavior, yet the exploit-validation purpose, listener-based data flows, and handoff to follow-on exploitation make it high security risk.

Confidence: 91%Severity: 78%
Audit Metadata
Analyzed At
Apr 22, 2026, 06:19 PM
Package URL
pkg:socket/skills-sh/crtvrffnrt%2Fskills%2Fpentest-outbound-interaction-oob-detection%2F@f233c2303d60fadc394b6528692f0f3ceda14792