api-bola

Warn

Audited by Socket on Sep 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. This is a coherent offensive-security skill for API pentesting, not a credential-stealing lure, but it gives an AI agent high-risk exploit-testing behavior against live APIs. Supply-chain risk is low, malware evidence is low, but overall security risk is high because the skill enables authorization-bypass testing with real-world impact.

Confidence: 84%Severity: 74%
Audit Metadata
Analyzed At
Sep 20, 2026, 11:02 PM
Package URL
pkg:socket/skills-sh/noorqureshi%2Fsploitagent%2Fapi-bola%2F@aa39a177df1dbbda16b44592f9ca45a40c2a244e99844a8d14a08c02405981f6
Security Audit — socket — api-bola