performing-graphql-depth-limit-attack

Warn

Audited by Socket on Apr 11, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is internally consistent with its stated purpose, but that purpose is to perform offensive GraphQL denial-of-service testing. It does not show credential theft or hidden exfiltration, so it is not confirmed malware; however, as an AI-agent skill it materially increases the agent's ability to execute disruptive security attacks and should be treated as high risk.

Confidence: 92%Severity: 82%
Audit Metadata
Analyzed At
Apr 11, 2026, 08:42 PM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fperforming-graphql-depth-limit-attack%2F@50e4b434f5e290294bb901700477f795fd4664cd