offensive-z-wave

Warn

Audited by Socket on Sep 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK. The skill’s footprint is coherent with its stated purpose, but that purpose is explicitly offensive: it equips an AI agent to attack Z-Wave networks, read hub-stored keys, and trigger physical device actions. Core tooling comes from unverifiable third-party repos, raising supply-chain risk, and the capability set is inappropriate for general agent use.

Confidence: 95%Severity: 94%
Audit Metadata
Analyzed At
Sep 15, 2026, 01:32 PM
Package URL
pkg:socket/skills-sh/snailsploit%2Fclaude-red%2Foffensive-z-wave%2F@3d620d90d5ccebf8a15a50dd9961f7264fccfb4bfdcb38e850885c3ecbe080e3
Security Audit — socket — offensive-z-wave