java-auth-audit

Warn

Audited by Socket on Apr 11, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

该技能与其声明目的总体一致:它就是一个 Java 鉴权审计/反编译分析技能,未见明显凭据窃取或外传数据流,因此不像恶意植入物。但它本质上赋予 AI 代理较强的攻防审计与绕过分析能力,并依赖外部 CFR JAR 及可选其他技能,属于高风险安全工具而非普通开发辅助技能。

Confidence: 90%Severity: 81%
Audit Metadata
Analyzed At
Apr 11, 2026, 11:51 AM
Package URL
pkg:socket/skills-sh/RuoJi6%2Fjava-audit-skills%2Fjava-auth-audit%2F@e8f4f202a42321c89368d49782d296f6a2b9ac4d