hunt-broken-function-level-auth

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent as a red-team guide, but it gives an AI agent offensive security capabilities to probe authorization bypasses on live services. No clear malware or credential theft is present, yet the exploit-oriented purpose and disabled TLS checks make the overall security risk high.

Confidence: 93%Severity: 84%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:51 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fhunt-broken-function-level-auth%2F@c8d0fa7adfcad446385965d68f34b8838b307563559c173391477602fd4972f0
Security Audit — socket — hunt-broken-function-level-auth