hunt-ato
Warn
Audited by Socket on Jul 31, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
This skill is internally consistent as a red-team ATO methodology, but its actual footprint is highly dangerous for an AI agent: it operationalizes credential theft, token capture, phishing, brute force, and account takeover validation against real services. No strong supply-chain abuse is present, but the offensive capability and exfiltration workflows make it high-risk and suspicious to deploy.
Confidence: 89%Severity: 92%
Audit Metadata