vulnerability-validation

Warn

Audited by Socket on Sep 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill is internally coherent for security-validation work and shows no credential theft, exfiltration, or supply-chain abuse. However, it materially enables offensive security activity by directing the agent to validate exploitability and generate proof-of-concept exploits, which makes it high-risk despite aligned purpose.

Confidence: 89%Severity: 71%
Audit Metadata
Analyzed At
Sep 16, 2026, 04:30 PM
Package URL
pkg:socket/skills-sh/factory-ai%2Fskills%2Fvulnerability-validation%2F@2c87d582dd0e6788c221d29289fc0a952bf4616b507469de759e7fb3f1f07851
Security Audit — socket — vulnerability-validation