offensive-jwt
Warn
Audited by Socket on Sep 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill is internally consistent with its stated purpose, but that purpose is to perform offensive JWT security testing. It meaningfully expands an AI agent's exploit capability, including auth bypass, brute force, injection, and mobile token extraction, so it should be classified as high security risk but not confirmed malware.
Confidence: 94%Severity: 86%
Audit Metadata