testing-apis

Warn

Audited by Socket on Mar 21, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent as an API pentesting guide, but it gives an AI agent high-risk offensive security capabilities with active exploitation, fuzzing, and potential service-impacting actions. No clear credential theft or covert exfiltration is present, so this is not confirmed malware, but it is a high-risk security skill that should not run broadly or autonomously.

Confidence: 91%Severity: 88%
Audit Metadata
Analyzed At
Mar 21, 2026, 01:20 AM
Package URL
pkg:socket/skills-sh/trilwu%2Fsecskills%2Ftesting-apis%2F@2f39e9618aef6ff412f17af79bc8125ff4f35f99