ai-pentesting
Warn
Audited by Socket on Apr 20, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally consistent, but its stated purpose is autonomous offensive security. The main risks are high-impact exploitation capability, CI automation, unpinned runtime installation of Shannon, and forwarding LLM credentials into external code. This looks more like a high-risk pentesting/exploitation skill than malware, but it should be treated as dangerous.
Confidence: 94%Severity: 88%
Audit Metadata