scanning-api-security

Warn

Audited by Socket on May 6, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill is internally coherent and not overtly malicious, but it equips an AI agent with security scanning/offensive assessment capabilities. No clear credential theft or exfiltration appears, and external tools are official/expected, yet the exploit-oriented use case and bash-enabled scanning make overall risk high.

Confidence: 89%Severity: 74%
Audit Metadata
Analyzed At
May 6, 2026, 09:08 AM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins-plus-skills%2Fscanning-api-security%2F@63993cdc73c41f64bc1903a6a826356486d427e0
Security Audit — socket — scanning-api-security