performing-api-inventory-and-discovery
Warn
Audited by Socket on Apr 10, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally consistent for API discovery, but it equips an AI agent with offensive security scanning capabilities against live infrastructure and includes disabled TLS verification. There is no clear credential theft or exfiltration logic, so this is not confirmed malware, but it is a high-risk cybersecurity skill.
Confidence: 91%Severity: 86%
Audit Metadata