zen-ai-pentest-framework

Warn

Audited by Socket on Sep 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is coherent with its stated purpose, but that purpose is to give an AI agent autonomous offensive-security capability with real tool execution and external network actions. Install sources are mostly standard registries/GitHub and not overtly deceptive, but the skill’s operational footprint is inherently high risk and disproportionate for general-use agents; it should be treated as a dangerous security tool rather than malware.

Confidence: 88%Severity: 86%
Audit Metadata
Analyzed At
Sep 15, 2026, 09:48 PM
Package URL
pkg:socket/skills-sh/reason-machines%2Fsecurity-skills%2Fzen-ai-pentest-framework%2F@cd62ba33c03613f3eaaaf4ac04c34b2d5683cc1a94f415781c3bb3b9afb9c91a
Security Audit — socket — zen-ai-pentest-framework