social-eng-vishing-pretext

Warn

Audited by Socket on Sep 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is internally consistent and does not show malware-style behavior, installers, or credential exfiltration. However, it gives an AI agent explicit offensive social-engineering capability involving live human interaction and impersonation, making it a high-risk pentest skill even with consent and stop-at-objective guardrails.

Confidence: 92%Severity: 78%
Audit Metadata
Analyzed At
Sep 20, 2026, 11:03 PM
Package URL
pkg:socket/skills-sh/noorqureshi%2Fsploitagent%2Fsocial-eng-vishing-pretext%2F@651c30157e8a1d4114654c88416a98580b48c878ddcd06f58f55d20388a1e752
Security Audit — socket — social-eng-vishing-pretext