detecting-sql-injection-vulnerabilities

Warn

Audited by Socket on Mar 24, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is internally aligned with its stated purpose and does not request credentials, install software, or route data to third-party endpoints, which argues against malware. However, it is an offensive-security-style agent skill with bash execution and the ability to inspect untrusted code while writing outputs, so its overall risk is elevated even though the data flows remain local and proportionate.

Confidence: 86%Severity: 58%
Audit Metadata
Analyzed At
Mar 24, 2026, 04:46 PM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins-plus-skills%2Fdetecting-sql-injection-vulnerabilities%2F@d490b1b215b6b7732bb89f403ccd1037f243c345