performing-penetration-testing

Warn

Audited by Socket on May 9, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its behavior is coherent with its stated purpose, but that purpose is to give an AI agent offensive security scanning capability against live targets and local code. No clear credential harvesting or attacker-controlled exfiltration is shown, so this is not confirmed malware; however, agentic pentesting, broad execution permissions, untrusted remote content handling, and an unseen setup script make it high security risk.

Confidence: 84%Severity: 82%
Audit Metadata
Analyzed At
May 9, 2026, 03:47 AM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins-plus-skills%2Fperforming-penetration-testing%2F@f81cf2aa60c97895ae17c44534bee93585a5eee0
Security Audit — socket — performing-penetration-testing