shodan-reconnaissance

Warn

Audited by Socket on Sep 10, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent and uses official Shodan tooling/endpoints, so it does not look malicious or like credential harvesting. However, it explicitly equips an AI agent for penetration-testing reconnaissance and active scanning of external targets, which is a high-risk offensive-security capability even with authorization warnings and a confirmation gate.

Confidence: 93%Severity: 74%
Audit Metadata
Analyzed At
Sep 10, 2026, 07:00 AM
Package URL
pkg:socket/skills-sh/sickn33%2Fagentic-awesome-skills%2Fshodan-reconnaissance%2F@995661837e52c620099f86768d8685a280158cc97415f0c7fe674d6ece976126
Security Audit — socket — shodan-reconnaissance