mcp-security-hub

Warn

Audited by Socket on May 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is coherent with its stated purpose, but that purpose is to arm an AI agent with broad offensive security capabilities. The main concerns are AI-enabled exploit/scanning actions, elevated Docker and network privileges, credential forwarding into containers, and a mild publisher/install-source mismatch. High security risk, but not confirmed malware.

Confidence: 86%Severity: 82%
Audit Metadata
Analyzed At
May 18, 2026, 09:00 PM
Package URL
pkg:socket/skills-sh/Aradotso%2Fsecurity-skills%2Fmcp-security-hub%2F@0e7497a824e78f9d4bf3b5fb6ab76c9703c76ae5
Security Audit — socket — mcp-security-hub