boofuzz

Warn

Audited by Socket on Sep 5, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally coherent and uses an official installation path, with no credential harvesting or odd data routing, so it is not malware-like. However, its stated purpose is to enable network protocol fuzzing by an AI agent, which is a high-risk offensive security capability and warrants elevated risk despite otherwise benign supply-chain signals.

Confidence: 93%Severity: 78%
Audit Metadata
Analyzed At
Sep 5, 2026, 10:44 PM
Package URL
pkg:socket/skills-sh/aeondave%2Fmalskill%2Fboofuzz%2F@eeeb1cca336c753528d9c4499da5427950049fd37b2076c9731cd47b5db0a27b
Security Audit — socket — boofuzz