amass

Warn

Audited by Socket on Sep 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill is internally coherent and not credential-harvesting, but it is a high-risk offensive security skill for an AI agent. Its capabilities match its stated OWASP recon purpose, install/data-flow trust is mostly normal, and the main concern is that it enables active scanning and attack-surface discovery rather than benign development workflow tasks.

Confidence: 90%Severity: 74%
Audit Metadata
Analyzed At
Sep 15, 2026, 09:57 AM
Package URL
pkg:socket/skills-sh/aeondave%2Fmalskill%2Famass%2F@7ccea0dea2d9183643fb38ff68ded339fc5068a30c84e2973600cb04cc982261
Security Audit — socket — amass