mobile-ios-assessment

Warn

Audited by Socket on Sep 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is coherent for an iOS penetration-testing purpose, but that purpose itself gives an AI agent offensive security capability, including keychain dumping, SSL-pinning bypass, jailbreak-based instrumentation, and backend abuse testing. Data access is proportionate to that purpose, and there is no direct credential exfiltration or hidden third-party proxying, so this is not confirmed malware; however, it remains high risk because it operationalizes invasive mobile assessment techniques and references unpinned third-party tooling.

Confidence: 89%Severity: 79%
Audit Metadata
Analyzed At
Sep 20, 2026, 11:03 PM
Package URL
pkg:socket/skills-sh/noorqureshi%2Fsploitagent%2Fmobile-ios-assessment%2F@56122d1ab14b196e9558e33863781716e9de5b7f7c4819243f9c4f50fa59e5dd
Security Audit — socket — mobile-ios-assessment