hunt-metrics-exposure

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent as a red-team recon tool, but that purpose itself is high risk for an AI agent because it enables offensive scanning of external targets and disables TLS verification. No installer or credential-harvesting behavior is present, so this is not confirmed malware, but it is a high-risk offensive capability.

Confidence: 91%Severity: 84%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:51 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fhunt-metrics-exposure%2F@e6733bbbe29b3664734974f67c57ad2d80b1e8e139fe64c4a4a7a19be4311553
Security Audit — socket — hunt-metrics-exposure