Cross-Site Scripting and HTML Injection Testing

Warn

Audited by Socket on Jul 28, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its footprint is fundamentally offensive: it teaches exploitation, victim delivery, phishing, cookie theft, keylogging, and exfiltration to attacker-controlled servers. Install trust is low concern, but the skill itself grants dangerous attack capability inconsistent with a normal defensive web-testing helper.

Confidence: 97%Severity: 93%
Audit Metadata
Analyzed At
Jul 28, 2026, 05:48 AM
Package URL
pkg:socket/skills-sh/IGUNUBLUE%2Fawesome-AI-skills%2Fcross-site-scripting-and-html-injection-testing%2F@f03fea5b4eb16bb5b43c73b5006b41ab68d47dd9
Security Audit — socket — Cross-Site Scripting and HTML Injection Testing