redirect-forge

Fail

Audited by Socket on Aug 22, 2026

2 alerts found:

MalwareSecurity
MalwareHIGH
SKILL.md

SUSPICIOUS/HIGH-RISK. The skill is internally consistent as an offensive pentest playbook, but that purpose itself is high risk for an AI agent: it teaches exploitation, credential/token capture, phishing, SSRF chaining, and uses known interception endpoints. Third-party tool trust is also broad and unpinned. This is not confirmed malware, but it is a dangerous offensive capability set.

Confidence: 96%Severity: 95%
SecurityMEDIUM
references/oauth-redirect-guide.md

No executable dependency code is provided; the fragment reads as an OAuth `redirect_uri` exploitation guide with a token-catching example and token-exchange steps. While this does not prove that a real package contains malware, the content is highly sensitive and directly facilitates authorization code/token theft and account takeover if embedded into a software component’s runtime behavior or distributed as part of an attack toolchain. Treat as suspicious from a supply-chain perspective and require provenance/context review before use.

Confidence: 63%Severity: 78%
Audit Metadata
Analyzed At
Aug 22, 2026, 11:19 PM
Package URL
pkg:socket/skills-sh/rifteo%2Fskills%2Fredirect-forge%2F@af853d0a31d2d934fe5198e8bdec26e4b32238a6b1d549c2543c9ebf70726b27
Security Audit — socket — redirect-forge