firmware-pentest
Warn
Audited by Socket on Sep 4, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s capabilities align with its stated purpose, but that purpose is to equip the agent for offensive firmware penetration testing, including exploitation and reverse shell generation, which is high-risk for an AI agent even with an authorization gate. Install sources are mostly legitimate and same-org, so this is not confirmed malware, but the skill still carries substantial security risk from offensive capability enablement and unpinned clone/build/install flows.
Confidence: 91%Severity: 76%
Audit Metadata