mapping-attack-techniques

Warn

Audited by Socket on Jul 30, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s routing and ATT&CK mapping purpose is coherent, but it supports offensive security workflows and includes a third-party URL-fetch path through defuddle.md that exports requested URLs off-host. There is no confirmed malware, no credential harvesting, and no install-time execution, but the combination of security-operation routing, external-content ingestion, and transitive skill handoff makes this higher risk than a normal documentation skill.

Confidence: 89%Severity: 64%
Audit Metadata
Analyzed At
Jul 30, 2026, 01:18 AM
Package URL
pkg:socket/skills-sh/trilwu%2Fsecskills%2Fmapping-attack-techniques%2F@c78199639876ca01266d376fb5934af9be2c575f6ceb0813688f5cbe549c4cc8
Security Audit — socket — mapping-attack-techniques