subdomain-takeover-hunt
Warn
Audited by Socket on Jul 31, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is internally coherent for subdomain takeover hunting, but it equips an AI agent with offensive reconnaissance capability and depends partly on less-verifiable third-party security tooling. No clear credential theft or malware behavior is present, yet the combination of autonomous recon instructions and external CLI trust makes it a medium-high security risk.
Confidence: 90%Severity: 62%
Audit Metadata