shodan-reconnaissance

Warn

Audited by Socket on Jun 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally coherent and uses official Shodan tooling and endpoints, so it does not look like credential theft or a deceptive supply-chain lure. However, its purpose is explicitly penetration-testing reconnaissance and active scanning, which gives an AI agent offensive security capability with real external impact; that makes the skill high-risk even though the install path and data flow are otherwise legitimate.

Confidence: 91%Severity: 74%
Audit Metadata
Analyzed At
Jun 2, 2026, 05:22 AM
Package URL
pkg:socket/skills-sh/sickn33%2Fantigravity-awesome-skills%2Fshodan-reconnaissance-and-pentesting%2F@6fae38cffa37f5f9074ef22e6e7fbe344a723634
Security Audit — socket — shodan-reconnaissance