pentest-engagement

Warn

Audited by Socket on Jul 30, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its behavior is mostly aligned with its stated pentest purpose, but that purpose itself grants an AI agent offensive security capabilities, autonomous live-target scanning, and credential forwarding to third-party recon/CVE services. No strong malware indicators or hidden exfiltration are shown in this file, but the operational risk is high and disproportionate for general agent use.

Confidence: 90%Severity: 88%
Audit Metadata
Analyzed At
Jul 30, 2026, 04:36 PM
Package URL
pkg:socket/skills-sh/transilienceai%2Fcommunitytools%2Fpentest-engagement%2F@6cde102839b78f0ffc3cd38fc90ddc1bd2e6d4f70552bb117156333e4b873770
Security Audit — socket — pentest-engagement