dotdotpwn
Warn
Audited by Socket on Sep 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is coherent with its stated purpose and shows no clear credential theft or covert exfiltration, but it equips an AI agent with offensive directory-traversal testing capabilities against network targets. Install trust is mostly acceptable via Kali apt; the GitHub/CPAN path is moderate supply-chain risk, not malware evidence.
Confidence: 92%Severity: 74%
Audit Metadata