prototype-pollution
Warn
Audited by Socket on Jul 21, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally consistent as a prototype-pollution testing guide, but its core purpose is to equip an AI agent with offensive security capabilities and possible RCE chains against live targets. No strong signs of credential theft or hidden exfiltration were found, so this is high-risk offensive enablement rather than confirmed malware.
Confidence: 89%Severity: 82%
Audit Metadata