full-test
Warn
Audited by Socket on Mar 23, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill's QA purpose partly fits its behavior, but it grants an autonomous agent broad offensive security-testing authority, forbids user check-ins, depends on unseen child skills, and silently writes telemetry into hidden project memory. No clear credential theft or attacker-controlled exfiltration is shown, so this is not confirmed malware, but the capability scope and autonomous execution model make it high risk.
Confidence: 89%Severity: 81%
Audit Metadata