workflow-security-audit

Warn

Audited by Socket on Mar 29, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is purpose-aligned as a security-audit workflow, but it grants an AI agent explicit offensive security behavior through penetration-testing instructions. With no evidence of credential theft, hidden exfiltration, or deceptive installs, it is not malware; however, it is a high-risk skill because it can direct autonomous exploit-oriented actions against target systems.

Confidence: 89%Severity: 76%
Audit Metadata
Analyzed At
Mar 29, 2026, 05:14 PM
Package URL
pkg:socket/skills-sh/nickcrew%2Fclaude-cortex%2Fworkflow-security-audit%2F@e857a6aebe4b370052f10ca457c3d55259e91e73