bb-methodology
Warn
Audited by Socket on Aug 6, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally coherent as a bug bounty methodology, but its actual footprint is a high-risk offensive-security orchestrator for AI agents. The strongest concerns are exploit guidance, broad autonomous probing, session reuse across tools, and explicit use of interactsh-style callback infrastructure.
Confidence: 90%Severity: 91%
Audit Metadata