sqlmap

Warn

Audited by Socket on Mar 13, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent with its stated purpose, but that purpose is to equip an AI agent with offensive security capabilities: SQL injection exploitation, database dumping, file reads, and OS-shell access. Install trust is relatively normal because sqlmap is an established official tool, but the operational footprint is high risk by design and inappropriate for general-purpose agents without strict authorization and human oversight.

Confidence: 96%Severity: 91%
Audit Metadata
Analyzed At
Mar 13, 2026, 09:19 PM
Package URL
pkg:socket/skills-sh/TerminalSkills%2Fskills%2Fsqlmap%2F@0bc4d57112dbd8583cc584f3f33c858c1fe89d20