burpsuite-project-parser

Warn

Audited by Socket on Apr 29, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill's purpose and capabilities are internally aligned, and data flow remains local, but its core parser is delegated to a non-official third-party Burp extension with inconsistent install instructions. This is not confirmed malware, yet it carries meaningful supply-chain and high-risk security-tooling concerns.

Confidence: 90%Severity: 72%
Audit Metadata
Analyzed At
Apr 29, 2026, 01:47 PM
Package URL
pkg:socket/skills-sh/trailofbits%2Fskills%2Fburpsuite-project-parser%2F@34b84bceefa63ef1d658d6504e919651ce94ad20