rsactftool

Warn

Audited by Socket on Sep 5, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent as an RSA attack guide, but that purpose itself gives an AI agent offensive cryptanalysis capability. There is no clear credential harvesting or malicious installer, yet the ability to recover private keys and decrypt ciphertext makes it high-risk and inappropriate for general agent use.

Confidence: 89%Severity: 84%
Audit Metadata
Analyzed At
Sep 5, 2026, 10:43 PM
Package URL
pkg:socket/skills-sh/aeondave%2Fmalskill%2Frsactftool%2F@d28fac3935e9a3dbd26d0cc8a80941a9ad0a8291e3d863a847a0bfbb94407e07
Security Audit — socket — rsactftool