HTML Injection Testing
Warn
Audited by Socket on Jul 28, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: this skill’s footprint is coherent with its stated purpose, but that purpose is to give an AI agent offensive web-exploitation capability, including phishing-style credential capture and defacement. Tool sourcing is mostly ordinary; the primary risk is enabling harmful attack execution rather than hidden malware behavior.
Confidence: 92%Severity: 84%
Audit Metadata