web3-ai-tools

Warn

Audited by Socket on Aug 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent as an offensive-security arsenal, but that purpose itself gives the agent high-risk pentesting and exploit capabilities, adds transitive skill installs, processes untrusted content with exec/network access, and forwards API keys to several third-party tools. Supply-chain hygiene is mixed rather than overtly malicious, but the overall security risk is high.

Confidence: 93%Severity: 91%
Audit Metadata
Analyzed At
Aug 27, 2026, 05:38 AM
Package URL
pkg:socket/skills-sh/awarexone%2Fweb3-bug-bounty-hunting-ai-skills%2Fweb3-ai-tools%2F@2af9a559b5ed9f40434bc8a7b9ed9b84f04f3ffbbb30101758f3067431dc5422
Security Audit — socket — web3-ai-tools