poc-weaponization

Warn

Audited by Socket on Sep 21, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The flagged patterns are largely documentation examples, not hidden execution or exfiltration by the skill itself. However, the skill's actual purpose is offensive: it enables an AI agent to adapt and improve public PoCs into reliable exploits, which is fundamentally high risk and disproportionate for normal developer-assistance use even without direct malware behavior.

Confidence: 93%Severity: 81%
Audit Metadata
Analyzed At
Sep 21, 2026, 02:22 PM
Package URL
pkg:socket/skills-sh/aeondave%2Fmalskill%2Fpoc-weaponization%2F@721b6a7bf88e38185b55be0b8e8c853b57e7f2a650e936eed949fb59c57c2fac
Security Audit — socket — poc-weaponization