testing-web-applications
Warn
Audited by Socket on Mar 21, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
This skill is internally consistent with its stated purpose, but that purpose is to equip an AI agent with offensive web exploitation capability. It meaningfully increases risk through exploit payloads, credential theft patterns, sensitive-file targeting, and active attack tooling, so it should be classified as suspicious/high-risk rather than benign. There is no clear evidence of hidden malware or deceptive exfiltration by the skill author itself.
Confidence: 95%Severity: 90%
Audit Metadata