SMTP Penetration Testing

Warn

Audited by Socket on Sep 14, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the documented capabilities are internally consistent with an SMTP penetration-testing skill, and the installs are ordinary distro-package commands. However, the skill is an offensive security playbook for an AI agent, including brute forcing and user enumeration, which creates high real-world misuse risk even without overt malware or credential exfiltration behavior.

Confidence: 92%Severity: 82%
Audit Metadata
Analyzed At
Sep 14, 2026, 07:22 AM
Package URL
pkg:socket/skills-sh/googyosoo%2Fantigravity-skills%2Fsmtp-penetration-testing%2F@45067d430fc57a0577a76ab71b152bd90b55b414
Security Audit — socket — SMTP Penetration Testing