application-security-testing

Warn

Audited by Socket on Aug 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s purpose and capabilities are coherent, but it gives an AI agent offensive security testing and exploit execution abilities against live systems, which is high risk by design. It also relies on transitive skill installation/use for critical install and credential details, increasing trust and review gaps. No direct evidence here shows credential theft or malicious exfiltration, so this is high-risk security tooling rather than confirmed malware.

Confidence: 89%Severity: 82%
Audit Metadata
Analyzed At
Aug 20, 2026, 11:38 PM
Package URL
pkg:socket/skills-sh/usestrix%2Fstrix%2Fapplication-security-testing%2F@6957dbbc6921ac9d9736dd54df92d27368226da41dcf5aeaa0a676db760d78bd
Security Audit — socket — application-security-testing