pentest-ai-agents

Warn

Audited by Socket on Sep 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH RISK. The skill is internally consistent with its stated purpose, but that purpose is to give an AI agent offensive security, phishing, payload, credential-harvesting, and post-exploitation capability. The install chain is partly same-org and plausible, so this is not confirmed malware, but it materially increases real-world misuse risk and should be treated as a high-risk offensive skill.

Confidence: 92%Severity: 89%
Audit Metadata
Analyzed At
Sep 15, 2026, 09:00 PM
Package URL
pkg:socket/skills-sh/reason-machines%2Fsecurity-skills%2Fpentest-ai-agents%2F@43454a2eacc092657f3981e8d461ef0f68826fda52e9b47b5c782e7e6f3ef37d
Security Audit — socket — pentest-ai-agents