security-review
Warn
Audited by Socket on Apr 19, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the install and data-flow story is mostly clean, but this skill grants an AI agent explicit penetration-testing capability against live applications. Its offensive testing scope, autonomous multi-step probes, and exposure to untrusted web content make it high-risk even though the stated purpose matches the behavior.
Confidence: 89%Severity: 82%
Audit Metadata