exploiting-web3-smart-contracts

Warn

Audited by Socket on Sep 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s content is largely aligned with its stated purpose and its installs are mostly from official sources, but the purpose itself is an offensive security capability for AI agents. The main concerns are exploit-enablement and moderate supply-chain hygiene issues from unpinned installs and an official curl|bash bootstrap, not credential theft or covert exfiltration.

Confidence: 90%Severity: 74%
Audit Metadata
Analyzed At
Sep 16, 2026, 11:08 AM
Package URL
pkg:socket/skills-sh/trilwu%2Fsecskills%2Fexploiting-web3-smart-contracts%2F@8b17819a955d80dd03934e3454b396dd3266cda87d5986aebad6e6fd84ba7c3b
Security Audit — socket — exploiting-web3-smart-contracts