performing-graphql-depth-limit-attack
Warn
Audited by Socket on Apr 11, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
This skill is internally consistent with its stated purpose, but that purpose is to perform offensive GraphQL denial-of-service testing. It does not show credential theft or hidden exfiltration, so it is not confirmed malware; however, as an AI-agent skill it materially increases the agent's ability to execute disruptive security attacks and should be treated as high risk.
Confidence: 92%Severity: 82%
Audit Metadata