cross-pollination

Warn

Audited by Socket on May 12, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent, but its purpose is to equip an AI agent for offensive security research and mass vulnerability discovery across third-party packages. There is little evidence of credential theft or malicious payload delivery, but the exploit-hunting and untrusted-content processing make it a high-risk security skill.

Confidence: 92%Severity: 81%
Audit Metadata
Analyzed At
May 12, 2026, 05:08 PM
Package URL
pkg:socket/skills-sh/ByamB4%2Ffind-cve-agent%2Fcross-pollination%2F@801fabbf952f2023937934511a1ccfd6ec8bad86
Security Audit — socket — cross-pollination