cspt

Warn

Audited by Socket on Sep 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent as a CSPT hunting guide and shows no installer, credential harvesting, or hidden data exfiltration. However, it is a high-risk offensive security skill because it teaches an AI agent to identify and exploit web vulnerabilities, including bypass and attacker-controlled callback techniques.

Confidence: 95%Severity: 78%
Audit Metadata
Analyzed At
Sep 22, 2026, 05:36 PM
Package URL
pkg:socket/skills-sh/securityfortech%2Fhacking-skills%2Fcspt%2F@553c406065f9b46dad2d486cea2ec2f88fd4da66f1fb3730a072f119c5ca01fa
Security Audit — socket — cspt