mobile-pentest

Warn

Audited by Socket on Aug 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent as a mobile pentest guide, but its actual footprint is a high-risk offensive security capability set for AI agents. Tool provenance is mostly legitimate, yet the combination of decompilation, credential extraction, SSL pinning bypass, signer recovery, and live API attack workflows makes it dangerous even without clear malicious deception.

Confidence: 93%Severity: 88%
Audit Metadata
Analyzed At
Aug 27, 2026, 10:34 AM
Package URL
pkg:socket/skills-sh/awarexone%2Fagentic-bug-hunter%2Fmobile-pentest%2F@154e4c474cc313c3b4eadf45b72e61c0fcacea83f21b44f7d4e8a024109bf799
Security Audit — socket — mobile-pentest