recon-dir-scan
Warn
Audited by Socket on Mar 30, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill is internally consistent with its stated purpose, but that purpose is to provide an AI agent with offensive web enumeration capability. Install sources are mostly legitimate yet loosely pinned, and the skill enables active target probing and forwarding of auth material to scanning tools. High security risk from capability class, not clear malware or credential theft.
Confidence: 90%Severity: 83%
Audit Metadata