application-security-testing

Warn

Audited by Socket on Sep 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s purpose and capabilities are coherent, but it gives an AI agent offensive security testing and exploit execution abilities against live systems, which is high risk by design. It also relies on transitive skill installation/use for critical install and credential details, increasing trust and review gaps. No direct evidence here shows credential theft or malicious exfiltration, so this is high-risk security tooling rather than confirmed malware.

Confidence: 89%Severity: 82%
Audit Metadata
Analyzed At
Sep 2, 2026, 02:07 AM
Package URL
pkg:socket/skills-sh/usestrix%2Fstrix%2Fapplication-security-testing%2F@d5a28fe502ca1523ed4c0af0de9fa10faa91c23dc3d5aeafd2b2b41b3dbe7d38
Security Audit — socket — application-security-testing