owasp-top10-analysis
Warn
Audited by Socket on Aug 25, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill is coherent with its stated purpose, but that purpose is to enable an AI agent to perform active offensive web security testing, including SSRF against internal/cloud metadata targets. There is little supply-chain or credential-harvesting evidence, but the autonomous exploit-testing capability makes the overall risk high.
Confidence: 94%Severity: 86%
Audit Metadata