building-threat-actor-profile-from-osint

Warn

Audited by Socket on Apr 7, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The skill is purpose-consistent and uses mostly official APIs and standard packages, so it does not look malicious. However, it equips an AI agent with real reconnaissance/threat-intelligence capability, runs a local security scanning tool, and processes untrusted external content with write/exec access, making it a moderate-to-high security-risk cybersecurity skill rather than a benign documentation-only guide.

Confidence: 84%Severity: 68%
Audit Metadata
Analyzed At
Apr 7, 2026, 06:48 PM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fbuilding-threat-actor-profile-from-osint%2F@1feb2219e346603b656a7cb58712fc808506a050