abusing-ci-cd-oidc

Warn

Audited by Socket on Jul 30, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is a high-risk offensive security capability for AI agents. Its purpose is explicitly to exploit CI/CD and OIDC weaknesses, and it contains direct credential-harvesting and exfiltration instructions, including an attacker-controlled callback endpoint. There is little supply-chain concern, but the operational abuse, credential access, and exfiltration guidance make the skill dangerous and inconsistent with benign developer-assistance use.

Confidence: 95%Severity: 96%
Audit Metadata
Analyzed At
Jul 30, 2026, 01:17 AM
Package URL
pkg:socket/skills-sh/trilwu%2Fsecskills%2Fabusing-ci-cd-oidc%2F@393753e3768c266ff20f768fc28331588424703ca096c0f1370cc197ffa3026d
Security Audit — socket — abusing-ci-cd-oidc