performing-clickjacking-attack-test
Warn
Audited by Socket on Apr 10, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally coherent for penetration testing and uses trusted local tooling, but it materially enables an AI agent to perform offensive security testing and live clickjacking attack PoCs against web applications. Main risk is offensive capability, not malware, credential theft, or supply-chain behavior.
Confidence: 93%Severity: 86%
Audit Metadata