breach

Warn

Audited by Socket on Apr 25, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent as a red-team/planning skill and shows no clear credential theft, exfiltration route, or supply-chain installer abuse. However, it grants an AI agent high-risk offensive security capabilities, including phishing and social-engineering scenario design plus semi-autonomous operation, which makes it dangerous despite lacking strong malware evidence.

Confidence: 93%Severity: 79%
Audit Metadata
Analyzed At
Apr 25, 2026, 12:04 PM
Package URL
pkg:socket/skills-sh/simota%2Fagent-skills%2Fbreach%2F@ff98fd7431d103ae4f272a0cafeedeb942479f13