cve-poc-generator

Warn

Audited by Socket on May 11, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent and uses mostly legitimate sources, but it equips an AI agent with exploit-development capability by generating CVE PoC code from external research. Main risk is offensive-security enablement and untrusted-content-to-code generation, not credential theft or malicious install behavior.

Confidence: 88%Severity: 78%
Audit Metadata
Analyzed At
May 11, 2026, 07:48 AM
Package URL
pkg:socket/skills-sh/transilienceai%2Fcommunitytools%2Fcve-poc-generator%2F@9159a8c1b993e7b3f4f70ab0989d312246b84396