competition-file-parser-chain

Warn

Audited by Socket on Mar 31, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is internally coherent as a sandboxed CTF file-parser tracing workflow and shows no direct exfiltration, credential use, or installer abuse, but it materially equips an AI agent for offensive security analysis of parser/deserialization chains. Risk is driven by dual-use exploit-analysis capability and transitive reliance on another skill, not by malicious data flows in this skill itself.

Confidence: 89%Severity: 58%
Audit Metadata
Analyzed At
Mar 31, 2026, 12:16 PM
Package URL
pkg:socket/skills-sh/GALIAIS%2FCTF-Sandbox-Orchestrator%2Fcompetition-file-parser-chain%2F@3285bbac58c2cd0c3900fb2c32509a674810a71c