Web Application Security Testing
Warn
Audited by Socket on Mar 16, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill is internally consistent with its stated purpose, but that purpose is to give an AI agent offensive web security testing capability. Installs are mostly from legitimate sources and there is no clear credential exfiltration, yet the skill enables high-risk pentesting and exploit-style actions against external targets without clear authorization safeguards.
Confidence: 90%Severity: 86%
Audit Metadata