offensive-graphql
Warn
Audited by Socket on Aug 27, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally consistent with its stated purpose, but that purpose is to equip an AI agent with offensive GraphQL attack techniques. There is no clear credential-harvesting or hidden malware behavior, yet the exploit, brute-force, DoS, and exfiltration guidance makes it a high-risk offensive-security skill rather than a benign development aid.
Confidence: 89%Severity: 83%
Audit Metadata