api-security-testing

Warn

Audited by Socket on Apr 7, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the bundle is internally coherent as an API security testing workflow, but it equips an AI agent for offensive security tasks and delegates execution to unspecified downstream skills with unclear provenance. No direct malware or exfiltration is shown in this file, yet the transitive trust chain and exploit-oriented use make it high security risk.

Confidence: 88%Severity: 78%
Audit Metadata
Analyzed At
Apr 7, 2026, 10:34 PM
Package URL
pkg:socket/skills-sh/davila7%2Fclaude-code-templates%2Fapi-security-testing%2F@4f3875a1f1756bf6625e00fd63ed4dc5b3c574ac