performing-jwt-none-algorithm-attack
Warn
Audited by Socket on Apr 9, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally consistent, but its stated purpose is to perform an authentication-bypass attack and it gives an AI agent offensive security automation against external targets. Install trust is mostly normal; the primary risk is the exploit capability and autonomous network use, not malware or hidden exfiltration.
Confidence: 92%Severity: 83%
Audit Metadata