security-audit

Warn

Audited by Socket on Sep 8, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent with its stated purpose as a security-audit skill and shows no malware indicators, no credential harvesting, and no suspicious external installs or data-routing. But its core purpose is to arm an AI agent with offensive security auditing and exploit-validation behavior, including broad reading of untrusted content plus local write/exec actions, so the overall security risk is high even though malicious intent is not confirmed.

Confidence: 91%Severity: 74%
Audit Metadata
Analyzed At
Sep 8, 2026, 07:00 AM
Package URL
pkg:socket/skills-sh/seaworld008%2Fcommonly-used-high-value-skills%2Fsecurity-audit%2F@5d4643a0e734f8ac4a4915dbca4cefe87402e9fafeaac434a6d8af0a9f72fe61
Security Audit — socket — security-audit