security-testing
Warn
Audited by Socket on Sep 16, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s capabilities are purpose-aligned for security testing, and data flows mostly go to official tools/services rather than unknown intermediaries. However, it grants an AI agent explicit penetration-testing guidance and includes mediocre supply-chain hygiene (unpinned installs, mutable/deprecated action refs), making it a medium-risk security skill rather than benign documentation.
Confidence: 91%Severity: 62%
Audit Metadata