performing-penetration-testing

Warn

Audited by Socket on Jul 21, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is purpose-consistent and not obviously malicious, but it equips an AI agent to conduct penetration-testing workflows with broad execution scope and transitive trust in 25 subordinate skills. The main concerns are offensive-security capability, autonomous orchestration, and partial inconsistency in enforcing authorization-first behavior; supply-chain indicators in this file are relatively low.

Confidence: 90%Severity: 82%
Audit Metadata
Analyzed At
Jul 21, 2026, 11:34 AM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins%2Fperforming-penetration-testing%2F@ba273fda3dc3f10acc9886f7290c992f1c3456bcbb9be64c2390e45928fbbd12
Security Audit — socket — performing-penetration-testing