infra-pentesting

Warn

Audited by Socket on Aug 6, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

HIGH risk. The skill is internally consistent as an offensive pentesting playbook, but it gives an AI agent autonomous exploit, credential-theft, persistence, pivoting, and exfiltration capabilities while discouraging additional approval checks. Official package-manager usage lowers pure supply-chain concern, yet the skill remains dangerous because its core purpose is active offensive security against live infrastructure.

Confidence: 95%Severity: 97%
Audit Metadata
Analyzed At
Aug 6, 2026, 06:29 AM
Package URL
pkg:socket/skills-sh/narlyseorg%2Fsuperhackers%2Finfra-pentesting%2F@e7925a41822e6b936dcb37ab34f80726bb5dd062508ae7f11b72ef8ae2e770ef
Security Audit — socket — infra-pentesting