permission-boundary-test

Warn

Audited by Socket on Apr 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally coherent as a security testing guide and has no installer, third-party credential routing, or exfiltration behavior. However, it explicitly equips an AI agent to perform systematic authorization and IDOR probing, which is high-risk offensive security capability even when framed as testing.

Confidence: 90%Severity: 74%
Audit Metadata
Analyzed At
Apr 22, 2026, 05:41 PM
Package URL
pkg:socket/skills-sh/blunotech-dev%2Fagents%2Fpermission-boundary-test%2F@3251167e6c8cfe9f203792970f2143b235b0cc8b
Security Audit — socket — permission-boundary-test