web3-hunt-foundation

Warn

Audited by Socket on Mar 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally coherent as a Web3 bug-bounty recon guide, with no credential harvesting or exfiltration behavior, but it gives an AI agent offensive security capabilities and directs it to process untrusted external code and content. Tool references appear proportionate and mostly official; the main risk is enabling autonomous vulnerability research, not malware.

Confidence: 89%Severity: 77%
Audit Metadata
Analyzed At
Mar 17, 2026, 04:29 PM
Package URL
pkg:socket/skills-sh/shuvonsec%2Fweb3-bug-bounty-hunting-ai-skills%2Fweb3-hunt-foundation%2F@9921ab81563bfb6d5fe01155af3e1806b82c7cf6