flask-werkzeug-attack

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its footprint is coherent with its stated purpose, but that purpose is explicitly offensive: probing remote services, extracting debugger secrets, and attempting RCE. No strong malware or credential-harvesting evidence appears, but this is a high-risk exploit skill with disabled TLS checks and active attack instructions.

Confidence: 93%Severity: 86%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:49 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fflask-werkzeug-attack%2F@ff82e8a5bf7c4dd2d7657bdcd70b77e2db5b13fd4251576060044d84007f2d63
Security Audit — socket — flask-werkzeug-attack