security-testing
Warn
Audited by Socket on Mar 26, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The skill is internally consistent as a security-testing guide, but it equips an AI agent with offensive security and pentest capabilities against live targets, which is high risk by design. Supply-chain concerns are moderate due to an unpinned official GitHub Action and outdated ZAP image reference, but there is no clear credential theft or exfiltration behavior.
Confidence: 93%Severity: 84%
Audit Metadata