performing-steganography-detection

Warn

Audited by Socket on Mar 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is broadly coherent with its stated digital-forensics purpose and keeps data local, but it grants an AI agent offensive-capable security analysis/extraction workflows. Install trust is mostly acceptable via standard package managers, though one installer path (`pip install zsteg`) is inconsistent with upstream documentation and the installs are unpinned. Overall this is not malicious or credential-harvesting, but it is a high-risk cybersecurity skill for agent use.

Confidence: 90%Severity: 74%
Audit Metadata
Analyzed At
Mar 15, 2026, 01:54 PM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fperforming-steganography-detection%2F@41b412a3f7f85c5c4e19ac586bbd74199d1c9e18