default-credentials

Warn

Audited by Socket on Sep 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent, but its purpose is to help an AI agent perform offensive credential attacks, including brute-force, spraying, and lockout bypass. There is no clear malicious exfiltration to attacker-controlled infrastructure, but the capability set is inherently high risk for misuse and disproportionate for general-agent deployment.

Confidence: 94%Severity: 83%
Audit Metadata
Analyzed At
Sep 22, 2026, 05:36 PM
Package URL
pkg:socket/skills-sh/securityfortech%2Fhacking-skills%2Fdefault-credentials%2F@f5ad0bddb707a1b6dce8bc1774ab5b8b1077793585a2c0e6ecc7927c815a2ab8
Security Audit — socket — default-credentials