api-authorization-and-bola

Warn

Audited by Socket on Apr 8, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill is internally consistent and contains no installer or credential-harvesting behavior, but it is an offensive API authorization-testing playbook for an AI agent. Its main risk is enabling active exploitation of real targets, not malware or supply-chain abuse.

Confidence: 92%Severity: 74%
Audit Metadata
Analyzed At
Apr 8, 2026, 05:24 AM
Package URL
pkg:socket/skills-sh/yaklang%2Fhack-skills%2Fapi-authorization-and-bola%2F@e793d3b137da5820f5e26fffaf5586594a9bc2aa