pywinrm

Fail

Audited by Socket on Jul 2, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

MALICIOUS. While remote Windows administration matches the stated purpose, the skill embeds exposed admin credentials for public IPs and instructs insecure WinRM settings that disable core protections. Its real footprint combines credential disclosure, weakened transport security, and broad remote-control capability, making it unsafe to use.

Confidence: 97%Severity: 99%
Audit Metadata
Analyzed At
Jul 2, 2026, 07:12 PM
Package URL
pkg:socket/skills-sh/DrOlu%2Fagent-skills%2Fpywinrm%2F@d8dbedee630dac1be1f44c1fd530c1f7eaad9fc80b0699115828a0cbf2095449
Security Audit — socket — pywinrm