performing-security-testing

Fail

Audited by Socket on Mar 12, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill content aligns with a legitimate security testing workflow: defining scope, executing automated scanners, analyzing results, and producing structured reports. The footprint is proportionate to its stated purpose, and typical credential usage is appropriate for authorized assessments. However, there are potential security considerations around how tools are installed, how credentials are managed, and how sensitive findings are stored and surfaced. The lack of explicit source verification, pinning, and secure handling guidance elevates risk somewhat but remains within a benign to mildly suspicious profile given proper authorization and controlled environment.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 12, 2026, 12:32 AM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins-plus-skills%2Fperforming-security-testing%2F@373743e2977cbf91d45584aa416ad65c05a7f950