analyzing-typosquatting-domains-with-dnstwist

Warn

Audited by Socket on Mar 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent and uses an official registry package for its stated purpose, so it does not look malicious. However, it gives an AI agent offensive-capable security scanning functionality and lets it process untrusted external web content with exec/write access, which makes the overall security risk medium-to-high despite good purpose alignment.

Confidence: 87%Severity: 72%
Audit Metadata
Analyzed At
Mar 15, 2026, 03:58 PM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fanalyzing-typosquatting-domains-with-dnstwist%2F@306d92ae333bc3491d15887e9ed63e1c380ef918