api-graphql

Warn

Audited by Socket on Sep 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent as a pentest technique, but it is a high-risk offensive security skill that equips an AI agent to enumerate schemas, brute-force fields, bypass authorization, and stress target APIs. There are no strong malware indicators or covert credential theft, but the capability itself is dangerous and unsuitable outside tightly controlled authorized testing.

Confidence: 90%Severity: 84%
Audit Metadata
Analyzed At
Sep 20, 2026, 11:02 PM
Package URL
pkg:socket/skills-sh/noorqureshi%2Fsploitagent%2Fapi-graphql%2F@ec6066ae236612d8a364f56ae98c4bdf481985ba02ae634e2d2c0e242a2dc88f
Security Audit — socket — api-graphql