pentest-commands

Fail

Audited by Socket on Feb 16, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

This skill document is a clearly dual-use pentesting command reference: accurate and actionable for authorized security testing but containing explicit, high-impact offensive instructions (exploits, payload generation, reverse shells, brute-force workflows). The content itself is not obfuscated and contains no embedded malware or hardcoded exfiltration endpoints, but it materially enables potentially illegal activity if used without authorization. Treat this artifact as high-risk contextual material that requires strict governance, written authorization, and operational controls when used. From a supply-chain perspective, the file is not malware, but it increases attack-capability for an operator and thus raises security concerns that should be mitigated by policy and monitoring.

Confidence: 98%
Audit Metadata
Analyzed At
Feb 16, 2026, 12:49 PM
Package URL
pkg:socket/skills-sh/ivanvza%2Fdspy-skills%2Fpentest-commands%2F@09b0b460051d5655028f048ff2ace3f3e952afdc