red-run-ctf

Warn

Audited by Socket on Apr 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent with its stated purpose, but that purpose is to give an AI agent high-risk offensive security orchestration capabilities. The main concern is not hidden malware but the deliberate enablement of autonomous pentest actions, credential handling, pivoting, and transitive loading of additional technique skills.

Confidence: 94%Severity: 92%
Audit Metadata
Analyzed At
Apr 2, 2026, 04:46 PM
Package URL
pkg:socket/skills-sh/blacklanternsecurity%2Fred-run%2Fred-run-ctf%2F@e352c99cabef3b000cb14d3c049850a6f70539b6
Security Audit — socket — red-run-ctf