arjun

Warn

Audited by Socket on Sep 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill is internally consistent with its stated purpose, but that purpose is to equip an AI agent with offensive web-security testing workflows. Installation trust is relatively normal (PyPI, no curl|bash), yet the capability scope is high-risk because it enables authenticated scanning, passive recon, and direct handoff into exploit-oriented tools. Suspicious overall due to offensive-agent use, not because of hidden exfiltration or deceptive install behavior.

Confidence: 89%Severity: 78%
Audit Metadata
Analyzed At
Sep 15, 2026, 09:58 AM
Package URL
pkg:socket/skills-sh/aeondave%2Fmalskill%2Farjun%2F@bb5d8d6203eb5a273eb414401b974e3d7ffe091aedb613be199f1d9d2e2ec3da
Security Audit — socket — arjun