security-audit
Warn
Audited by Socket on Mar 17, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the bundle is internally aligned with security auditing, but its actual footprint is a high-risk offensive-security orchestrator that delegates to many unreviewed sub-skills while being mislabeled as safe. No direct malware or credential-harvesting behavior is shown in this file, but the transitive trust chain and exploit-oriented capabilities make it a high-risk skill bundle.
Confidence: 87%Severity: 82%
Audit Metadata