exploiting-broken-function-level-authorization

Warn

Audited by Socket on Mar 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is purpose-aligned and not deceptive, but it is a high-risk offensive security skill for AI agents. It enables automated privilege-escalation testing and potentially destructive API actions using real credentials; there is no hidden exfiltration or suspicious installer, but the capability itself is dangerous and should be tightly controlled.

Confidence: 89%Severity: 86%
Audit Metadata
Analyzed At
Mar 15, 2026, 10:50 PM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fexploiting-broken-function-level-authorization%2F@6862d3696650156df85f16a506784058c77c2a7e