competition-race-condition-state-drift

Warn

Audited by Socket on Mar 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

该技能与其宣称用途基本一致:它是一个面向 CTF 沙箱的竞态漏洞复现子技能,没有明显的凭据窃取、外部代理转发或可疑安装链。但它明确为 AI 代理提供进攻性安全测试能力,并依赖上游/旁路技能路由,因此整体应归类为高风险安全能力型技能,而非恶意窃密型内容。

Confidence: 90%Severity: 72%
Audit Metadata
Analyzed At
Mar 31, 2026, 12:17 PM
Package URL
pkg:socket/skills-sh/GALIAIS%2FCTF-Sandbox-Orchestrator%2Fcompetition-race-condition-state-drift%2F@9f9b2f31bac881b4514e0ab12c6773f90a222154