web3-triage-report

Warn

Audited by Socket on Mar 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent, but its purpose is to give an AI agent offensive web3 vulnerability research and exploit-validation capability. There is little evidence of malware or credential theft, yet the security posture is high risk because it enables penetration-testing style behavior and processes untrusted external content with executable tooling.

Confidence: 91%Severity: 81%
Audit Metadata
Analyzed At
Mar 17, 2026, 04:28 PM
Package URL
pkg:socket/skills-sh/shuvonsec%2Fweb3-bug-bounty-hunting-ai-skills%2Fweb3-triage-report%2F@3b496cfd595144e218f390318286c71a2cb94f79