owasp-top10-analysis

Warn

Audited by Socket on Aug 25, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is coherent with its stated purpose, but that purpose is to enable an AI agent to perform active offensive web security testing, including SSRF against internal/cloud metadata targets. There is little supply-chain or credential-harvesting evidence, but the autonomous exploit-testing capability makes the overall risk high.

Confidence: 94%Severity: 86%
Audit Metadata
Analyzed At
Aug 25, 2026, 06:28 AM
Package URL
pkg:socket/skills-sh/iam-niranjan%2Fskills%2Fowasp-top10-analysis%2F@5c0f4feff980e92a383f2edd7bb080b203a2ceb7c27fd6cc6cc038dbf37d3e6e
Security Audit — socket — owasp-top10-analysis