sstimap
Warn
Audited by Socket on Sep 5, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is coherent with its stated purpose, but that purpose is offensive SSTI detection and exploitation for an AI agent, including remote command execution and shell access. Install trust is moderate rather than extreme because the repo is legitimate and public, but the unpinned personal-repo clone and offensive capability keep overall risk high.
Confidence: 93%Severity: 78%
Audit Metadata