web-client-side-signing-bypass

Warn

Audited by Socket on Sep 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is coherent with its stated purpose, but that purpose is offensive security enablement for bypassing client-side protections and fuzzing protected APIs. There is no installer, no credential harvesting, and no suspicious third-party data routing, so this is not malware; however, it is a high-risk security-testing skill that could be misused against unintended targets.

Confidence: 88%Severity: 78%
Audit Metadata
Analyzed At
Sep 20, 2026, 11:03 PM
Package URL
pkg:socket/skills-sh/noorqureshi%2Fsploitagent%2Fweb-client-side-signing-bypass%2F@8cf769c0cda64aeca0bc17ec62a96724598a0176203335fcb85900c609b775cf
Security Audit — socket — web-client-side-signing-bypass