ctf-crypto

Warn

Audited by Socket on Apr 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is internally consistent with its stated purpose as a CTF cryptography attack reference, and there is no clear credential theft or exfiltration behavior. However, it is a high-risk offensive-security skill for AI agents, and its executable workflows plus unpinned GitHub tool installation make it suspicious from a security perspective even without evidence of malware.

Confidence: 90%Severity: 74%
Audit Metadata
Analyzed At
Apr 17, 2026, 03:16 PM
Package URL
pkg:socket/skills-sh/ljagiello%2Fctf-skills%2Fctf-crypto%2F@4bda63c865eaf4a7872cce86797a666d0a7814d1