pentest-agents-bug-bounty-framework
Warn
Audited by Socket on May 17, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
This skill is not obviously credential-stealing malware, but it is a high-risk offensive-security framework. Its actual footprint matches its stated purpose, yet that purpose itself gives an AI agent autonomous pentesting, exploit-chain construction, external-content ingestion, credentialed platform access, and report submission abilities that are dangerous and disproportionate for normal coding assistance.
Confidence: 93%Severity: 96%
Audit Metadata