hunt-ssrf

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. It is internally consistent as a red-team SSRF hunting skill, but its actual footprint is offensive: probing arbitrary targets, inducing server-side requests, using OOB infrastructure, and pursuing metadata credentials and internal pivots. No strong malware evidence or deceptive install path is present, but this is a high-risk exploit capability for an AI agent.

Confidence: 94%Severity: 91%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:52 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fhunt-ssrf%2F@f3e169a218ac113ae14f89c7ab0fb0ba8cae17414b26e8000aa0ec41763b69cf
Security Audit — socket — hunt-ssrf