File Path Traversal Testing

Fail

Audited by Socket on Feb 15, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

This skill is a comprehensive, dual-use offensive testing guide for path traversal and LFI exploitation. It is internally consistent with its stated purpose (testing/exploitation) and contains no embedded obfuscated malware or hidden network exfiltration. However, it documents explicit, actionable techniques to read highly sensitive files and escalate to RCE (log poisoning, php wrappers), so it is high-risk if used without authorization. Use should be limited to authorized security testing and accompanied by legal/ethical safeguards.

Confidence: 80%Severity: 70%
Audit Metadata
Analyzed At
Feb 15, 2026, 08:10 PM
Package URL
pkg:socket/skills-sh/davila7%2Fclaude-code-templates%2Ffile-path-traversal-testing%2F@18e2326304e6b7ca5f76b69d6e44b4b54607d2aa