vulnerability-validation

Warn

Audited by Socket on Sep 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent with its stated purpose and has no obvious exfiltration, credential harvesting, or supply-chain abuse, but its purpose is to give an AI agent offensive security validation and PoC-generation capability. That makes it high-risk as a security/exploit tool for agents, though not confirmed malware.

Confidence: 90%Severity: 74%
Audit Metadata
Analyzed At
Sep 16, 2026, 04:38 PM
Package URL
pkg:socket/skills-sh/factory-ai%2Ffactory-plugins%2Fvulnerability-validation%2F@167b8bc0012f01586ed3ce2a28ae6cd696dba028a89923bd7492112fabb07521