exploiting-oauth-misconfiguration
Warn
Audited by Socket on Mar 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS/HIGH-RISK skill. Its stated purpose matches its capabilities, but the purpose itself is to equip an AI agent with offensive OAuth exploitation techniques, including credential capture and account-takeover paths. Data flows to attacker-controlled endpoints are intentional and disproportionate for a general agent skill.
Confidence: 95%Severity: 90%
Audit Metadata