parallel-recon-triad

Fail

Audited by Socket on Jul 9, 2026

2 alerts found:

Malwarex2
MalwareHIGH
SKILL.md

MALICIOUS. This skill is purpose-built to let an AI agent conduct persistent, stealthy, self-improving offensive reconnaissance and exploitation-oriented probing against external targets. The install steps are mostly ordinary distro packages, but the skill’s actual footprint—autonomous attack orchestration, WAF bypass, OPSEC concealment, third-party routing, and credential-use escalation—is fundamentally incompatible with a benign developer-assistant purpose.

Confidence: 97%Severity: 98%
MalwareHIGH
references/cron-template.md

This prompt template is high-risk attack-orchestration content. It instructs an autonomous, persistent agent to perform stealthy, large-scale reconnaissance against third-party sites, including enumeration of WordPress/XMLRPC surfaces, probing for exposed secrets, downloading JS bundles to extract API keys/JWTs, and attempting access to highly sensitive files/backup artifacts (e.g., /.env, /.git, wp-config backups, logs/backups). Combined with Tor/proxy circuit rotation and WAF/evasion logic, it is best treated as hostile tooling/payload rather than benign software.

Confidence: 78%Severity: 97%
Audit Metadata
Analyzed At
Jul 9, 2026, 04:45 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fparallel-recon-triad%2F@287a930cb4b702141d22288f8562834738e67bc417b1d97a5ed90b6956888ec5
Security Audit — socket — parallel-recon-triad