performing-ssrf-vulnerability-exploitation

Warn

Audited by Socket on Apr 7, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill is purpose-aligned and uses a benign dependency install path, but its purpose is itself high risk: it equips an AI agent to perform live SSRF exploitation, internal probing, and cloud metadata credential retrieval. This is best classified as suspicious/high-risk offensive security functionality rather than confirmed malware.

Confidence: 93%Severity: 84%
Audit Metadata
Analyzed At
Apr 7, 2026, 01:02 PM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fperforming-ssrf-vulnerability-exploitation%2F@6fff2083d02eb2e9540ae9ae118ffecf5ac499a7