solve-challenge

Warn

Audited by Socket on Apr 14, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent for CTF triage, but it grants an AI agent offensive security capabilities, delegates into additional skills, and references an unverifiable local installer script. No clear credential theft or exfiltration behavior is shown, so this looks like a high-risk offensive skill rather than confirmed malware.

Confidence: 86%Severity: 78%
Audit Metadata
Analyzed At
Apr 14, 2026, 04:33 AM
Package URL
pkg:socket/skills-sh/ljagiello%2Fctf-skills%2Fsolve-challenge%2F@1f9a51abfdb29bbd36110539f5af8ffd9c73df19