Broken Authentication Testing

Warn

Audited by Socket on Sep 14, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill is coherent with its stated purpose, but that purpose is to give an AI agent offensive authentication-testing capability. There is no obvious hidden exfiltration endpoint or suspicious installer, yet the skill enables brute force, credential stuffing, MFA bypass, and session hijacking techniques with real-world impact. Classified as SUSPICIOUS due to high-risk offensive security functionality for an agent.

Confidence: 90%Severity: 78%
Audit Metadata
Analyzed At
Sep 14, 2026, 07:20 AM
Package URL
pkg:socket/skills-sh/googyosoo%2Fantigravity-skills%2Fbroken-authentication-testing%2F@8759ba4515c675c83814890c65995dd679f54ea3
Security Audit — socket — Broken Authentication Testing