nessus

Warn

Audited by Socket on Sep 3, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is purpose-aligned and keeps data local to official Nessus interfaces, but it grants an AI agent offensive security capability and includes TLS verification bypass in API examples. This is not confirmed malware, yet it is a high-risk security skill that should be tightly controlled and manually supervised.

Confidence: 90%Severity: 74%
Audit Metadata
Analyzed At
Sep 3, 2026, 02:39 AM
Package URL
pkg:socket/skills-sh/timsonner%2Fagent-skills%2Fnessus%2F@08d331f1752aff685020f158157e981750e0c0d1ec41db1450ca355b1bfd0d32
Security Audit — socket — nessus