cors-cross-origin-misconfiguration
Warn
Audited by Socket on Jul 21, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally coherent as a CORS exploitation/testing playbook, but its actual footprint is an offensive security guide for AI agents. It includes explicit data-exfiltration payloads, internal network targeting, and attack chains beyond ordinary defensive documentation, so overall security risk is high even though there is little evidence of malware or supply-chain abuse.
Confidence: 91%Severity: 84%
Audit Metadata