ctf-forensics

Warn

Audited by Socket on Mar 13, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS overall due to high-risk AI-agent security tooling: the skill is internally consistent as a CTF forensics reference, but it enables credential recovery, cracking, and other offensive-adjacent workflows with Bash and write access. Install/data-flow patterns look mostly benign and official; the main concern is capability scope, not covert exfiltration or confirmed malware.

Confidence: 90%Severity: 78%
Audit Metadata
Analyzed At
Mar 13, 2026, 07:21 AM
Package URL
pkg:socket/skills-sh/ljagiello%2Fctf-skills%2Fctf-forensics%2F@4bd03c320fb279f9cd345265862eb9ff24be2b3e