penetration-testing

Fail

Audited by Socket on Mar 18, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

SUSPICIOUS. The skill is internally consistent with its stated purpose, but that purpose is to give an AI agent offensive security capability: scanning, exploitation, brute forcing, privilege escalation, credential harvesting, and shell access. The biggest risks are autonomous real-world actions against targets and download-execute of remote exploits/scripts. This is not confirmed malware, but it is a high-risk offensive skill.

Confidence: 97%Severity: 96%
Audit Metadata
Analyzed At
Mar 18, 2026, 10:46 PM
Package URL
pkg:socket/skills-sh/timsonner%2Fautonomous-pentest-agent%2Fpenetration-testing%2F@aeb757fbdff01e6975941c365a39896260a3f120