web3-audit

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent as a web3 audit guide, but its purpose is to give an AI agent offensive security capability for real smart-contract targets. There is no clear credential theft, hidden exfiltration, or deceptive install path, so this is not confirmed malware; the main concern is high-risk exploit enablement.

Confidence: 89%Severity: 74%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:52 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fweb3-audit%2F@1aaa2b2639e2d1ad8418ca467825859432c5de1273fc43c7375d1a5347adfad4
Security Audit — socket — web3-audit