ai-supply-chain

Warn

Audited by Socket on Sep 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK technique skill: its stated purpose and capabilities align, and its tool references appear legitimate, but it explicitly equips an AI agent to perform offensive ML supply-chain exploitation and RCE validation. It is not confirmed malware, yet it materially increases attack capability and should be treated as a high-risk security skill.

Confidence: 91%Severity: 83%
Audit Metadata
Analyzed At
Sep 20, 2026, 11:02 PM
Package URL
pkg:socket/skills-sh/noorqureshi%2Fsploitagent%2Fai-supply-chain%2F@75e104f92da29ab5e6fe4fb043b11f480a34241babe2fdd90390f4341fba8e06
Security Audit — socket — ai-supply-chain