mimipenguin
Warn
Audited by Socket on Sep 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally consistent with a credential-dumping tool, but that purpose itself gives an AI agent offensive secret-extraction capability, root access, and plaintext credential handling. There is no clear external exfiltration in the provided instructions, so this is high-risk security tooling rather than confirmed malware.
Confidence: 91%Severity: 90%
Audit Metadata