api-mass-assignment
Warn
Audited by Socket on Sep 20, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill is coherent as a mass-assignment exploitation guide, but its purpose is offensive security: it instructs an AI agent to manipulate live API requests to gain privileges or alter other users' data. There is no install-chain or credential-exfiltration behavior, so this is not confirmed malware, but it is a high-risk exploit capability for an agent.
Confidence: 93%Severity: 83%
Audit Metadata