cupp

Warn

Audited by Socket on Apr 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent, but its stated purpose is to support password guessing and brute-force/cracking workflows. That makes it a high-risk offensive security skill, with added supply-chain concern from direct execution of mutable code from a personal GitHub repository.

Confidence: 92%Severity: 89%
Audit Metadata
Analyzed At
Apr 16, 2026, 08:22 PM
Package URL
pkg:socket/skills-sh/AeonDave%2Fmalskill%2Fcupp%2F@d435de7661e91b3428661140c692cc88d9cb7b6a
Security Audit — socket — cupp