saml-sso-assertion-attacks

Warn

Audited by Socket on Apr 8, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is internally consistent but high risk because its stated purpose is to help an AI agent perform SAML/SSO attack testing against authentication systems. It shows no malware-like exfiltration, no suspicious installs, and no credential forwarding, but it materially enables offensive security actions and should be classified as suspicious/high-risk rather than benign.

Confidence: 95%Severity: 78%
Audit Metadata
Analyzed At
Apr 8, 2026, 05:24 AM
Package URL
pkg:socket/skills-sh/yaklang%2Fhack-skills%2Fsaml-sso-assertion-attacks%2F@8488ebaccbdddc71a9587e26eec862cbe6088924