xss-stored

Warn

Audited by Socket on Sep 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its stated purpose is offensive stored-XSS exploitation, and the actual content aligns with that by providing payloads for session theft, BeEF hooking, and victim-side action execution. No malware-specific stealth, obfuscation, or deceptive installer behavior is present, but the capability set is inherently dangerous for an AI agent because it operationalizes exploitation and credential theft.

Confidence: 93%Severity: 84%
Audit Metadata
Analyzed At
Sep 22, 2026, 05:37 PM
Package URL
pkg:socket/skills-sh/securityfortech%2Fhacking-skills%2Fxss-stored%2F@a60de224a8694bf6dbd0b0e831f670141c2f2ee2f92ce148fc8a7372efaab0c3
Security Audit — socket — xss-stored