purple-team-automation
Warn
Audited by Socket on Aug 26, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s behavior is coherent with its stated purple-team purpose, but that purpose itself grants an AI agent high-risk offensive security and command-execution capability. No clear malware or credential-stealing behavior is shown, yet the ability to run adversary emulation frameworks and custom scripts makes it a high-risk security skill that should not be treated as benign.
Confidence: 88%Severity: 81%
Audit Metadata