web3-start-here

Warn

Audited by Socket on Aug 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. This specific file is non-executable documentation and shows no direct credential theft, exfiltration, or malicious installer behavior, but it is clearly a security-hunting skill for AI agents, which is high-risk by purpose. Overall risk is driven more by offensive-security enablement than by confirmed malware indicators in the provided index alone.

Confidence: 85%Severity: 74%
Audit Metadata
Analyzed At
Aug 27, 2026, 05:38 AM
Package URL
pkg:socket/skills-sh/awarexone%2Fweb3-bug-bounty-hunting-ai-skills%2Fweb3-start-here%2F@575a7c4180115c5fcd77f0b5084c8edba393576b743d4f83d75af9da26473c8b
Security Audit — socket — web3-start-here