hunt-idor

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent as a red-team/offensive testing playbook, with low supply-chain concern, but it gives an AI agent high-risk exploit-hunting and exploitation guidance against arbitrary targets, including credentialed requests, destructive actions, and data-exfil/ATO chains. This makes it a high security-risk skill even without evidence of hidden malware.

Confidence: 93%Severity: 88%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:51 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fhunt-idor%2F@0cfef504581b0032997a6b787ab14d70917a710c006afb79627b27a52c7b9a3d
Security Audit — socket — hunt-idor