githacker-git-leak

Warn

Audited by Socket on Apr 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent, but its purpose is to give an AI agent offensive security capability for exploiting `.git` leaks and extracting secrets from recovered code. Install sources look legitimate; the primary risk is the exploit-oriented behavior and sensitive data exposure, not obvious malware or hidden exfiltration.

Confidence: 93%Severity: 86%
Audit Metadata
Analyzed At
Apr 22, 2026, 10:10 AM
Package URL
pkg:socket/skills-sh/wgpsec%2FAboutSecurity%2Fgithacker-git-leak%2F@b4251bc59151973a77c2783a2486033498f8aa7f