cloudflare-security-audit-skill
Warn
Audited by Socket on Sep 16, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s purpose and capabilities align: it is an offensive security audit orchestrator, so code inspection, prior-findings review, and parallel adversarial analysis are proportionate. Main risk is transitive trust from installing a mutable GitHub-hosted skill via the third-party Skills CLI; however, the repo is publicly under Cloudflare’s org and there is no evidence of credential harvesting, secret-file exfiltration, hidden execution, or third-party proxying. High-impact security-audit functionality is intentional, but the provided content is internally coherent rather than malicious.
Confidence: 90%Severity: 55%
Audit Metadata