php-cmd-audit
Warn
Audited by Socket on Sep 17, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
Suspicious but not malicious. The skill is internally consistent and does not show credential theft, exfiltration, remote installs, or hidden execution, but it explicitly enables an AI agent to perform command-injection vulnerability discovery and exploitation workflow, making it a high-risk security-audit/offensive capability.
Confidence: 92%Severity: 74%
Audit Metadata