hunt-oauth
Warn
Audited by Socket on Jul 31, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill is internally consistent with its stated red-team purpose, but that purpose is high risk: it equips an AI agent to perform offensive OAuth security testing and exploit validation against arbitrary targets. There is little evidence of hidden malware or credential exfiltration by the skill itself, yet its operational footprint is dangerous because it combines external-target analysis, command execution, and exploit guidance for account takeover scenarios.
Confidence: 91%Severity: 89%
Audit Metadata