hack

Warn

Audited by Socket on Sep 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent with its stated purpose, but that purpose is to give an AI agent offensive security capability. There is no clear credential-harvesting or covert exfiltration in the skill text, and the static prompt-injection findings are weak, but the overall capability set is high risk by design for an agent environment. Distribution evidence adds moderate supply-chain concern without proving malicious intent.

Confidence: 87%Severity: 76%
Audit Metadata
Analyzed At
Sep 15, 2026, 12:51 AM
Package URL
pkg:socket/skills-sh/yaklang%2Fhack-skills%2Fhack%2F@f4f6a518b3afe8c82fe8568e1fd8c70e28ac9f7655e9f667d1865d6c71c41ab1
Security Audit — socket — hack