api-bola
Warn
Audited by Socket on Sep 20, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. This is a coherent offensive-security skill for API pentesting, not a credential-stealing lure, but it gives an AI agent high-risk exploit-testing behavior against live APIs. Supply-chain risk is low, malware evidence is low, but overall security risk is high because the skill enables authorization-bypass testing with real-world impact.
Confidence: 84%Severity: 74%
Audit Metadata