competition-mailbox-abuse

Warn

Audited by Socket on Mar 31, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

该技能不是明显恶意或凭据窃取器,但其核心用途是指导 AI 代理分析邮箱滥用与持久化/外传链路,属于高敏感攻击性安全能力。由于没有外部安装、无凭据收集、无可见网络外传,恶意度较低;但从代理能力边界看,整体应归为 SUSPICIOUS。

Confidence: 89%Severity: 62%
Audit Metadata
Analyzed At
Mar 31, 2026, 12:17 PM
Package URL
pkg:socket/skills-sh/GALIAIS%2FCTF-Sandbox-Orchestrator%2Fcompetition-mailbox-abuse%2F@6f9e779ac1359982d47a2e7cec4c8707fb8e2e95