scanning-api-security

Warn

Audited by Socket on Apr 8, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is internally coherent for API security auditing and shows no clear credential theft or exfiltration behavior, but it grants an AI agent purposeful security-testing capability with Bash access. Risk is driven mainly by dual-use exploit/scanning functionality, not by malicious implementation or deceptive data flows.

Confidence: 87%Severity: 62%
Audit Metadata
Analyzed At
Apr 8, 2026, 01:39 AM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins-plus-skills%2Fscanning-api-security%2F@f94a69cc235ddd2e8bef5a4a3d3db35ee011bb60