infra-pentesting
Warn
Audited by Socket on Aug 6, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
HIGH risk. The skill is internally consistent as an offensive pentesting playbook, but it gives an AI agent autonomous exploit, credential-theft, persistence, pivoting, and exfiltration capabilities while discouraging additional approval checks. Official package-manager usage lowers pure supply-chain concern, yet the skill remains dangerous because its core purpose is active offensive security against live infrastructure.
Confidence: 95%Severity: 97%
Audit Metadata