offensive-business-logic

Warn

Audited by Socket on Sep 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally coherent as an offensive security methodology, but that purpose itself gives an AI agent exploit-oriented capability against arbitrary targets, including state manipulation, fraud bypass, and race-condition abuse. There is no strong evidence of malware, credential harvesting, hidden exfiltration, or untrusted installer behavior in this skill, but it remains high-risk because it operationalizes offensive testing rather than a benign developer workflow.

Confidence: 92%Severity: 78%
Audit Metadata
Analyzed At
Sep 15, 2026, 01:37 PM
Package URL
pkg:socket/skills-sh/snailsploit%2Fclaude-red%2Foffensive-business-logic%2F@2f92ff0f80309cfc1c5842322219180d79d8e4a27fab0366c8cf8f9114b99df7
Security Audit — socket — offensive-business-logic