red-team-reporting

Fail

Audited by Socket on Feb 16, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

[Skill Scanner] Detected attempt to override previous instructions All findings: [CRITICAL] prompt_injection: Detected attempt to override previous instructions (PI001) [AITech 1.1] [CRITICAL] prompt_injection: Detected jailbreak/DAN attempt (PI003) [AITech 1.1] [CRITICAL] prompt_injection: Detected jailbreak/DAN attempt (PI003) [AITech 1.1] This skill is coherent with its stated purpose and implements templates and helper classes for assembling security reports and creating ticket payloads. It does not include evidence of malicious code or intent. The primary security concerns are operational: inclusion of actionable PoCs and potentially sensitive evidence in reports/tickets and the lack of shown safeguards for sanitization, redaction, and secure handling of integration credentials when exporting to JIRA/Confluence or generating files. These are risks of data leakage rather than signs of malware.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Feb 16, 2026, 11:40 AM
Package URL
pkg:socket/skills-sh/pluginagentmarketplace%2Fcustom-plugin-ai-red-teaming%2Fred-team-reporting%2F@301ef1e913883044928780a832fa3645df147359