pentest

Warn

Audited by Socket on Apr 28, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's offensive-security purpose matches its capabilities, but it gives an AI agent live pentesting functionality, relies on an external scanner with an install path that is not cleanly verified, and forwards credentials/data through a third-party CLI that can use arbitrary LLM endpoints. This is coherent for a pentest skill, but still high security risk and not benign.

Confidence: 87%Severity: 84%
Audit Metadata
Analyzed At
Apr 28, 2026, 05:51 AM
Package URL
pkg:socket/skills-sh/ariadoss%2Fsuperskills%2Fpentest%2F@ffd18244d0e70386947ecc7fd1204eec904bc6f5