performing-web-application-penetration-test

Warn

Audited by Socket on Mar 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its stated purpose is coherent, but it grants an AI agent explicit offensive security capabilities against web applications, including exploit development, fuzzing, auth abuse, and callback-based testing. There is no strong sign of malware or deceptive credential harvesting, yet the operational risk is high because the skill could be misused against unintended targets and can collect sensitive application data during execution.

Confidence: 91%Severity: 89%
Audit Metadata
Analyzed At
Mar 15, 2026, 09:41 PM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fperforming-web-application-penetration-test%2F@198e128d7e294f8e7c1596eb4e6d9769ba96330e