aeon-vuln-scanner
Warn
Audited by Socket on May 18, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill's purpose is coherent, but it gives an AI agent offensive security tooling plus autonomous third-party actions using a write-scoped GitHub token. Data flows are mostly legitimate and aligned to GitHub, so this is not confirmed malware, but it is a high-risk security skill that should require strict human approval.
Confidence: 90%Severity: 78%
Audit Metadata