csrf

Warn

Audited by Socket on Sep 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is coherent as a CSRF testing guide and does not show malware, exfiltration, or installer abuse, but it equips an AI agent with offensive web exploitation procedures and payloads that can trigger unauthorized state-changing actions on real targets.

Confidence: 90%Severity: 74%
Audit Metadata
Analyzed At
Sep 22, 2026, 05:36 PM
Package URL
pkg:socket/skills-sh/securityfortech%2Fhacking-skills%2Fcsrf%2F@1d9beec1e392e7be7222b0d7575745ffbf2562d3a5df4c481f96b469a27d7ba0
Security Audit — socket — csrf