redteam-mindset

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK vulnerable skill, not confirmed malware. Its purpose and content are internally aligned as an offensive red-team methodology guide, but it materially increases an AI agent's capability to conduct autonomous penetration testing, use OOB infrastructure, install extra tooling, and chain into more offensive skills. No clear credential-harvesting or covert exfiltration is embedded, yet the operational footprint is inherently high risk for AI-agent use.

Confidence: 92%Severity: 90%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:52 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fredteam-mindset%2F@66b94549637e4b7f8b0f50b0b4003b88842def27337942663be3f0138a856d0c
Security Audit — socket — redteam-mindset