mindmap

Warn

Audited by Socket on May 10, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent, but its purpose is to help an AI agent perform offensive security reconnaissance and prioritize vulnerability testing. There is no clear credential theft or exfiltration in the snippet, so this is not confirmed malware; however, it materially increases offensive capability and relies on local helper scripts plus `uv run` execution whose full behavior is not visible here.

Confidence: 90%Severity: 78%
Audit Metadata
Analyzed At
May 10, 2026, 07:59 AM
Package URL
pkg:socket/skills-sh/H-mmer%2Fpentest-agents%2Fmindmap%2F@7e01951ae624d2f16c52d48e9a0732f70caa3b8b
Security Audit — socket — mindmap