web3-audit

Warn

Audited by Socket on Aug 6, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is coherent with its stated purpose, but that purpose is to give an AI agent offensive smart-contract auditing and exploit-PoC capability. Dependency provenance is mostly consistent and data flows are direct to the configured RPC provider, yet the combination of exploit tooling plus credentialed RPC use makes it high security risk even without clear malware behavior.

Confidence: 91%Severity: 78%
Audit Metadata
Analyzed At
Aug 6, 2026, 05:47 PM
Package URL
pkg:socket/skills-sh/shuvonsec%2Fclaude-bug-bounty%2Fweb3-audit%2F@62b1ba39a82035a3ba7318a1b1c3eb6d57234b3e1b6b769d02a5b1006aaf19da
Security Audit — socket — web3-audit