competition-android-hooking

Warn

Audited by Socket on Mar 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its footprint is coherent with its stated purpose, but that purpose is an offensive Android exploitation workflow: hooking apps, bypassing trust controls, extracting auth/signing material, and replaying accepted requests. There is no strong evidence of malware, covert exfiltration, or suspicious third-party install paths in the provided text, but the capability set itself is high risk and should be tightly sandboxed and approval-gated.

Confidence: 93%Severity: 84%
Audit Metadata
Analyzed At
Mar 31, 2026, 12:17 PM
Package URL
pkg:socket/skills-sh/GALIAIS%2FCTF-Sandbox-Orchestrator%2Fcompetition-android-hooking%2F@4b2a5106e32fd91d23bb973b9304623e15e54a6a