internal-recon

Warn

Audited by Socket on Apr 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

该技能与其声明目的基本一致,但其目的本身就是为 AI 代理提供内网渗透侦察能力,包含扫描、嗅探、关键资产定位和 pivot 指引,且还要求加载额外后渗透技能。未见明显凭证窃取或隐蔽外传,因此更适合归类为高风险进攻性/易滥用技能,而非确认恶意软件。

Confidence: 93%Severity: 88%
Audit Metadata
Analyzed At
Apr 22, 2026, 10:10 AM
Package URL
pkg:socket/skills-sh/wgpsec%2FAboutSecurity%2Finternal-recon%2F@26cda6c15fd5622efac6dd0ce8df5ceab68a860a
Security Audit — socket — internal-recon