appsec-expert

Warn

Audited by Socket on Sep 14, 2026

1 alert found:

Security
SecurityMEDIUM
references/security-examples.md

The code is a security guidance fragment that includes an intentionally vulnerable SSRF endpoint and an explicitly unsafe production debug configuration. Those portions would create significant application security risk if deployed, while the secure examples provide partial mitigations with some implementation limitations. No malicious payload, data exfiltration, persistence, or obfuscation is evident. The primary risk is accidental deployment of the labeled vulnerable examples, not supply-chain malware.

Confidence: 98%Severity: 72%
Audit Metadata
Analyzed At
Sep 14, 2026, 05:54 PM
Package URL
pkg:socket/skills-sh/martinholovsky%2Fclaude-skills-generator%2Fappsec-expert%2F@2801068e00c9a46918538165845bc7ce3e6bfa4c1229c85c49cda6081e611fb9
Security Audit — socket — appsec-expert