iso27001-gap-analyzer

Warn

Audited by Socket on May 4, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is not overtly malicious and shows no external credential routing or installer abuse, but its unrestricted Bash and broad file permissions are disproportionate to an ISO27001 gap-analysis helper. The vague, generic security framing and pentesting adjacency further weaken alignment with the stated purpose.

Confidence: 89%Severity: 67%
Audit Metadata
Analyzed At
May 4, 2026, 02:31 PM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins-plus-skills%2Fiso27001-gap-analyzer%2F@eed22a406dc851371368718f6717deefd8d38c82