battle

Fail

Audited by Socket on Mar 17, 2026

2 alerts found:

Obfuscated FileSecurity
Obfuscated FileHIGH
red_team.py

The file itself is a coordinating red-team agent that delegates high-risk operations to external scripts (HACK_SKILL/run.sh) and locally imported modules (hack.cascade_integration). The source code contains no explicit hardcoded credentials or obvious malicious payloads, but it creates clear execution and supply-chain sinks: arbitrary script execution via subprocess.run and dynamic local imports. If the external script/module are compromised, this agent will execute arbitrary code and persist any outputs. In untrusted environments treat HACK_SKILL and local 'hack' modules as untrusted and audit them before use. Disable 'chaos' exploit mode in sensitive environments and add output redaction, integrity checks (signatures/hashes) for external artifacts, and stricter access controls for memory persistence.

Confidence: 98%
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent as a security competition orchestrator, but it gives an AI agent high-risk offensive security and autonomous execution capabilities over code, containers, and firmware. No clear credential theft, exfiltration, or deceptive third-party routing is shown in this snippet, so it is not confirmed malicious; the main concern is dangerous capability and broad action scope inherent to the skill.

Confidence: 87%Severity: 81%
Audit Metadata
Analyzed At
Mar 17, 2026, 06:40 AM
Package URL
pkg:socket/skills-sh/grahama1970%2Fagent-skills%2Fbattle%2F@2c78ac8fe2f4bdfeda68f9f9890b276cbaa14215
Security Audit — socket — battle