qe-security-testing

Warn

Audited by Socket on Sep 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill is internally consistent as a security-testing guide, and the flagged command/secret findings are documentation artifacts. Risk comes mainly from giving an AI agent offensive security-testing capability plus some mutable CI supply-chain references and transitive skill coordination, not from clear credential theft or malicious data exfiltration.

Confidence: 92%Severity: 72%
Audit Metadata
Analyzed At
Sep 18, 2026, 06:16 PM
Package URL
pkg:socket/skills-sh/proffesor-for-testing%2Fagentic-qe%2Fqe-security-testing%2F@8b2fd80d3068e672100af2bb739e221c1678751010f5eff6bc95bc3a33eb83f8
Security Audit — socket — qe-security-testing