aeon-vuln-scanner

Warn

Audited by Socket on May 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill's purpose is coherent, but it gives an AI agent offensive security tooling plus autonomous third-party actions using a write-scoped GitHub token. Data flows are mostly legitimate and aligned to GitHub, so this is not confirmed malware, but it is a high-risk security skill that should require strict human approval.

Confidence: 90%Severity: 78%
Audit Metadata
Analyzed At
May 18, 2026, 01:13 PM
Package URL
pkg:socket/skills-sh/BankrBot%2Fskills%2Faeon-vuln-scanner%2F@284c53a908c6abda3e2b4f1f93e663efc7511563
Security Audit — socket — aeon-vuln-scanner