hunt-rce

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its capabilities align with its stated purpose, but that purpose is to equip an AI agent with offensive RCE discovery, validation, exfiltration, and chaining techniques against arbitrary targets. The use of known OAST endpoints, unsafe TLS-bypass examples, credential/secret access patterns, and explicit exploit payloads makes the overall footprint inappropriate for a general agent skill and highly dangerous even without confirmed embedded malware.

Confidence: 95%Severity: 96%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:51 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fhunt-rce%2F@131eba6faca0b8b4a2f8c655e1cabcc8e0040563595a22d713055c9ea572ce85
Security Audit — socket — hunt-rce