sast-pathtraversal
Warn
Audited by Socket on Sep 20, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill is internally consistent and does not show malware traits, credential harvesting, exfiltration, installer risk, or hidden execution. However, it equips the agent with offensive security scanning behavior, so it should be treated as a high-risk-but-coherent security-audit skill rather than benign general-purpose automation.
Confidence: 92%Severity: 74%
Audit Metadata