subdomain-enumeration

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is coherent as a recon skill, but it meaningfully expands an AI agent's offensive security capability and performs autonomous scanning against external targets. Core data flows are mostly direct to legitimate services, yet optional use of weaker-verified third-party binaries and local API credential use raise risk beyond a normal documentation skill.

Confidence: 87%Severity: 76%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:52 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fsubdomain-enumeration%2F@c02adfbf36a01fdf4b9344bfe36ddded79c9ed148e18666a64ff9e673f3f0c44
Security Audit — socket — subdomain-enumeration