hunt-nextjs

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its behavior is internally consistent with a red-team Next.js hunting purpose, so it is not deceptive malware, but it gives an AI agent offensive security capabilities against external targets and explicitly uses OOB exfiltration/callback infrastructure. Low supply-chain risk, high operational misuse risk.

Confidence: 94%Severity: 89%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:50 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fhunt-nextjs%2F@49914694a834c48520603c57d6b4db3157b9c0b744148622b8a31766d7eeedfb
Security Audit — socket — hunt-nextjs