web-app-security-audit
Warn
Audited by Socket on Apr 18, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill is internally consistent and uses mostly official tooling, so it is not malware-like or deceptive. However, it gives an AI agent explicit offensive security-audit capability, broad access to sensitive project files, and potential code/config modification paths, which makes it high risk as an agent skill even though its stated purpose is legitimate.
Confidence: 91%Severity: 74%
Audit Metadata