recon-subdomain-enum

Warn

Audited by Socket on Sep 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent as a recon technique, but it gives an AI agent explicit offensive security capabilities to enumerate and probe external targets. There is little evidence of malware or credential theft, yet the real-world scanning function makes it a high-risk agent skill.

Confidence: 89%Severity: 76%
Audit Metadata
Analyzed At
Sep 20, 2026, 11:03 PM
Package URL
pkg:socket/skills-sh/noorqureshi%2Fsploitagent%2Frecon-subdomain-enum%2F@2882e99929b384dc69d30a87638ac0bf89f432885783b6904ec4d76311935453
Security Audit — socket — recon-subdomain-enum