hunt-llm-ai

Warn

Audited by Socket on Aug 24, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally coherent as an offensive AI-security hunting guide, but its footprint is high-risk: it equips an AI agent to conduct prompt-injection exploitation, OOB exfiltration, SSRF to metadata services, and cross-tenant data theft validation against real systems. No strong malware evidence or hidden execution appears, but the combination of exploit guidance, known exfiltration endpoints, and autonomous external actions makes this a dangerous skill.

Confidence: 94%Severity: 92%
Audit Metadata
Analyzed At
Aug 24, 2026, 11:03 PM
Package URL
pkg:socket/skills-sh/elementalsouls%2Fclaude-bughunter%2Fhunt-llm-ai%2F@595914b630c2c78ab5e8364dcbcdfe64a2b25c524888d61fa1fefa2ff70cf4d4
Security Audit — socket — hunt-llm-ai