security-audit

Warn

Audited by Socket on Sep 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the bundle is purpose-aligned as a security-audit workflow, but it enables offensive security operations through an AI agent and depends on many unverified downstream skills. The main risks are transitive trust and agentic pentesting capability, not confirmed credential theft or malware in this file itself.

Confidence: 84%Severity: 81%
Audit Metadata
Analyzed At
Sep 17, 2026, 05:27 AM
Package URL
pkg:socket/skills-sh/davila7%2Fclaude-code-templates%2Fsecurity-audit%2F@89ebc8fb602592d78407fddee1dab1e97d9be48166ad442017f18664bbe99277
Security Audit — socket — security-audit