performing-subdomain-enumeration-with-subfinder

Warn

Audited by Socket on Mar 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill is internally consistent and uses official ProjectDiscovery installation sources, so it does not look like credential theft or deceptive malware. However, it is an offensive security skill that equips an AI agent to perform subdomain reconnaissance and follow-on scanning against external targets, which makes it high security risk despite coherent purpose alignment.

Confidence: 91%Severity: 74%
Audit Metadata
Analyzed At
Mar 15, 2026, 10:51 PM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fperforming-subdomain-enumeration-with-subfinder%2F@05c0da41b940286162c8c9c83e6eccaa8268edf2