recon-and-methodology

Warn

Audited by Socket on Jul 21, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent as a bug bounty recon playbook, but its actual function is to give an AI agent offensive security capabilities against external targets. There is no clear malware behavior, hidden exfiltration, or dubious installer path, yet the scanning, fuzzing, secret-discovery, and exploit-oriented testing make it high security risk for agent use.

Confidence: 90%Severity: 83%
Audit Metadata
Analyzed At
Jul 21, 2026, 01:28 PM
Package URL
pkg:socket/skills-sh/strivepan-svg%2Fhack-skills%2Frecon-and-methodology%2F@4daf6662dda02271bfa7ed28eeec514b268db2aaac5af2cb5cf5ef252b698250
Security Audit — socket — recon-and-methodology