competition-dpapi-credential-chain
Warn
Audited by Socket on Mar 31, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally coherent as a CTF/sandbox DPAPI workflow, but its actual footprint is an offensive credential-recovery and replay guide for Windows secrets. With no external installer or exfiltration path shown, this is not confirmed malware, but it is a high-risk offensive-security skill with disproportionate credential-access implications for an AI agent.
Confidence: 87%Severity: 82%
Audit Metadata