web-python-sandbox-escape

Warn

Audited by Socket on Sep 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is a high-risk offensive exploitation playbook for AI agents. Its purpose is to bypass Python sandbox restrictions and obtain host code execution, with proof via command output or file reads. There is no misleading installer or credential harvesting path, but the capability itself is fundamentally attack-oriented and unsuitable as a normal productivity skill.

Confidence: 93%Severity: 96%
Audit Metadata
Analyzed At
Sep 20, 2026, 11:03 PM
Package URL
pkg:socket/skills-sh/noorqureshi%2Fsploitagent%2Fweb-python-sandbox-escape%2F@82c92c6f57fbfe27b58fa312efd7d7ef9bd2d4b05440a029f4a549f2469ea3cc
Security Audit — socket — web-python-sandbox-escape