security-audit

Warn

Audited by Socket on Mar 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the bundle is internally aligned with security auditing, but its actual footprint is a high-risk offensive-security orchestrator that delegates to many unreviewed sub-skills while being mislabeled as safe. No direct malware or credential-harvesting behavior is shown in this file, but the transitive trust chain and exploit-oriented capabilities make it a high-risk skill bundle.

Confidence: 87%Severity: 82%
Audit Metadata
Analyzed At
Mar 17, 2026, 05:58 AM
Package URL
pkg:socket/skills-sh/diegosouzapw%2Fawesome-omni-skill%2Fsecurity-audit%2F@b4feaf55df9c0eeab0b2af06f7a27cd0688c1824