pentest-validation

Warn

Audited by Socket on Sep 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is purpose-aligned for pentest validation, and its offensive actions are openly disclosed rather than hidden, but it still equips an AI agent to perform exploit validation with real-world impact. No malicious installer, covert exfiltration endpoint, or deceptive credential routing is evident in this artifact; the main concern is high-risk offensive capability even with authorization and non-production safeguards.

Confidence: 85%Severity: 72%
Audit Metadata
Analyzed At
Sep 16, 2026, 02:00 PM
Package URL
pkg:socket/skills-sh/proffesor-for-testing%2Fagentic-qe%2Fpentest-validation%2F@b490eff4deb774cca9ec4ba0bfafa99a1dfe1fd73f2268d04574456b2e46a597
Security Audit — socket — pentest-validation