defense-malware-triage

Warn

Audited by Socket on Sep 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill is purpose-aligned and not overtly malicious: it describes a standard malware-triage workflow with no credential harvesting, covert behavior, or suspicious data routing. However, it equips an AI agent with security-sensitive malware-analysis capabilities and encourages handling hostile samples and sandbox execution, so it should be treated as high-risk defensive tooling rather than benign general documentation.

Confidence: 84%Severity: 72%
Audit Metadata
Analyzed At
Sep 20, 2026, 11:02 PM
Package URL
pkg:socket/skills-sh/noorqureshi%2Fsploitagent%2Fdefense-malware-triage%2F@38e70481f34c9fb7747bcb1c714e2127232d883231b24eb837ec5ee190755417
Security Audit — socket — defense-malware-triage