amass
Warn
Audited by Socket on Sep 3, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill is coherent with its stated pentest reconnaissance purpose and references legitimate same-project tools, but it gives an AI agent offensive external discovery capability and may use local API credentials via Amass config. There is no strong evidence of malware, credential harvesting, or third-party interception; the main concern is high-risk security tooling and real-world scanning use.
Confidence: 89%Severity: 72%
Audit Metadata