security-advisory-review
Warn
Audited by Socket on Jul 22, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally consistent for vulnerability research, but it is a high-risk offensive-security skill because it instructs an AI agent to clone untrusted repos, install dependencies, generate exploit code, and execute it locally. Main concerns are exploit-tool enablement, command execution on untrusted content, and prompt-injection/supply-chain exposure rather than overt credential theft or exfiltration.
Confidence: 91%Severity: 84%
Audit Metadata