dev-loop-security-auditor
Warn
Audited by Socket on Jul 8, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally consistent as a security-auditing guide, but it grants an AI agent active offensive-security workflows including penetration-testing and DAST against user-specified targets. There is no clear malware or exfiltration behavior, yet the capability set is high-risk by design and should be treated as a vulnerable/offensive skill rather than a benign documentation-only helper.
Confidence: 86%Severity: 74%
Audit Metadata