vulnerability-research

Warn

Audited by Socket on Sep 24, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is coherent with its stated purpose as a vulnerability-research workflow, and the cited network/API usage is largely official and documentation-like rather than covert exfiltration. However, this skill gives an AI agent high-risk offensive security capabilities, includes live-target scanning and PoC development, and relies on numerous external tools and untrusted content sources, so overall security risk is high even without clear evidence of malware or credential theft.

Confidence: 89%Severity: 74%
Audit Metadata
Analyzed At
Sep 24, 2026, 09:59 AM
Package URL
pkg:socket/skills-sh/iuliandita%2Fskills%2Fvulnerability-research%2F@8d4cced3a261d43b4c4b0f47b640e26f36e027752f40571fc98eae14467a0f8b
Security Audit — socket — vulnerability-research