pentest-validation

Warn

Audited by Socket on Apr 30, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent with its stated pentest purpose, but that purpose itself grants an AI agent high-risk offensive security capabilities: active exploitation, reverse-shell proof, credential attacks, SSRF to metadata/file targets, and PoC generation against live systems. Install/data-flow trust looks relatively clean in this fragment, but the operational capability is inherently dangerous and should be treated as high risk.

Confidence: 92%Severity: 86%
Audit Metadata
Analyzed At
Apr 30, 2026, 11:13 PM
Package URL
pkg:socket/skills-sh/proffesor-for-testing%2Fagentic-qe%2Fpentest-validation%2F@f5a6f6e8b2ed4e14ea5124d826bb363415f744d9