collecting-threat-intelligence-with-misp
Warn
Audited by Socket on Apr 8, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is internally consistent and mostly uses official MISP tooling, so it does not look like credential theft or a deceptive installer. Main concerns are the ssl=False examples, ingestion of untrusted external feeds, and that it equips an AI agent with operational cybersecurity tooling, which raises overall risk despite coherent purpose.
Confidence: 87%Severity: 56%
Audit Metadata