acidrain-security-testing-scripts
Warn
Audited by Socket on Aug 23, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s stated purpose matches its offensive capabilities, but it is still high risk because it equips an AI agent to perform web exploitation workflows, includes explicit cookie exfiltration examples, and relies on an unpinned third-party GitHub repo unrelated to the publisher. This looks more like a risky offensive-security skill than confirmed malware.
Confidence: 90%Severity: 81%
Audit Metadata