security-arsenal

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is purpose-aligned as a red-team arsenal, but that purpose is inherently high risk for an AI agent: it equips the agent to probe, exploit, brute-force, bypass authentication, and exfiltrate data using attacker-controlled and known interception endpoints. It is not confirmed malware because it does not target the user's own machine or hide behavior, but it is a high-risk offensive capability set and should be classified as suspicious/high-risk.

Confidence: 96%Severity: 94%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:52 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fsecurity-arsenal%2F@51669573cd91588c8e9472d768e8af6d7bea6eab1ffd8ffa21b61e7bf48a5b2a
Security Audit — socket — security-arsenal