configure-dast-scan

Warn

Audited by Socket on Jun 15, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is largely coherent with its stated purpose as a Harness DAST/STO configuration guide, and its main install path is official and same-org. Risk comes from enabling offensive security scanners, forwarding secrets to third-party scanner services, mutable @latest MCP installation, and minor transitive trust to other skills; these are proportionate enough to avoid a malicious classification but warrant medium caution.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
Jun 15, 2026, 12:58 AM
Package URL
pkg:socket/skills-sh/harness%2Fharness-skills%2Fconfigure-dast-scan%2F@dc152eb2eefe8ad171a0b3472eaf688c427bc2ba374f596010b2eb958c17bc83
Security Audit — socket — configure-dast-scan