pt-web-application-assessment

Warn

Audited by Socket on Apr 3, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill is internally coherent and has minimal supply-chain or credential-handling risk, but it gives an AI agent explicit offensive web-application testing capability. The main risk is the skill’s pentesting function itself, not hidden installs, exfiltration, or disproportionate access.

Confidence: 93%Severity: 74%
Audit Metadata
Analyzed At
Apr 3, 2026, 05:16 PM
Package URL
pkg:socket/skills-sh/santosomar%2Fethical-hacking-agent-skills%2Fpt-web-application-assessment%2F@9b5658230e90b8a3fe0c1333d7480b91592af4f7