api-mitmproxy

Warn

Audited by Socket on Jul 27, 2026

2 alerts found:

Securityx2
SecurityMEDIUM
SKILL.md

Purpose and capabilities are internally consistent: this is an official-tool guide for mitmproxy-based API interception and testing, not a disguised credential harvester. However, it is inherently high risk because it gives an AI agent offensive traffic interception, modification, replay, token capture, and SSL-unpinning workflows; use should be limited to authorized security testing environments.

Confidence: 93%Severity: 79%
SecurityMEDIUM
skill-report.json

The content presents high supply-chain and operational security risk primarily due to CI behaviors: a remote installer is piped directly into Bash (unverified remote code execution during CI), and a repository token is provided to third-party actions referenced via mutable/tag-based resolution (amplifying impact of upstream compromise). Additionally, the documentation/examples include risky credential handling (logging Authorization token prefixes) and a destructive cleanup command (rm -rf ~/.mitmproxy/) that can destroy interception trust material and configuration. Overall risk is high for CI environments and should be remediated by removing pipe-to-shell installs, pinning actions/versions, verifying downloads, and tightening logging/cleanup guidance.

Confidence: 70%Severity: 85%
Audit Metadata
Analyzed At
Jul 27, 2026, 07:32 AM
Package URL
pkg:socket/skills-sh/aiskillstore%2Fmarketplace%2Fapi-mitmproxy%2F@1fc4217f2c5015188b04ce4886a32f46af664a5fff12d1e1ba674f4f471f34e2
Security Audit — socket — api-mitmproxy