hunt-shadow-api

Warn

Audited by Socket on Jul 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent, but its purpose is to give an AI agent offensive API discovery and behavioral testing capability against live external targets. There is little supply-chain concern, but the security risk is high because this is a penetration-testing workflow with recursive probing of untrusted content and chaining into further exploitation.

Confidence: 88%Severity: 78%
Audit Metadata
Analyzed At
Jul 22, 2026, 08:24 PM
Package URL
pkg:socket/skills-sh/elementalsouls%2FClaude-BugHunter%2Fhunt-shadow-api%2F@b8c10939013bda19a606f9977c697fd99a87ad76d788db816d072154e5ea2c96
Security Audit — socket — hunt-shadow-api