API Fuzzing for Bug Bounty

Warn

Audited by Socket on Apr 15, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its stated purpose matches its capabilities, but the purpose itself is to equip an AI agent for offensive security testing and exploitation against live APIs. No strong credential theft pattern is present, and tool references are mostly legitimate, yet the exploit guidance, untrusted-content processing, rate-limit bypass tactics, and iplogger-style callback example make this unsuitable for broad autonomous agent use.

Confidence: 90%Severity: 88%
Audit Metadata
Analyzed At
Apr 15, 2026, 06:10 PM
Package URL
pkg:socket/skills-sh/cleodin%2Fantigravity-awesome-skills%2Fapi-fuzzing-for-bug-bounty%2F@b49da356b0e98f571cf65e6f0e89788dba35d1d2
Security Audit — socket — API Fuzzing for Bug Bounty