offensive-api-security

Warn

Audited by Socket on Aug 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its footprint matches its stated purpose, but that purpose is to give an AI agent offensive security capabilities against external systems, including active exploitation patterns, SSRF probing, and an explicit off-site data capture example. The main concern is operational misuse and harmful real-world actions, not hidden malware or deceptive installation.

Confidence: 93%Severity: 86%
Audit Metadata
Analyzed At
Aug 27, 2026, 02:27 PM
Package URL
pkg:socket/skills-sh/snailsploit%2Fclaude-red%2Foffensive-api-security%2F@7331d48704cc055ac75ad60179401def72b2531948b6e86439d1b37af6f46bee
Security Audit — socket — offensive-api-security