java-serialization-audit

Warn

Audited by Socket on May 4, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s stated purpose and capabilities are internally consistent, but it is a high-risk offensive security/audit skill because it teaches an AI agent to identify exploitable Java vulnerability patterns. It does not show malware-like behavior: no installs, no credential access, no exfiltration, and no hidden execution paths.

Confidence: 92%Severity: 64%
Audit Metadata
Analyzed At
May 4, 2026, 08:18 AM
Package URL
pkg:socket/skills-sh/wgpsec%2FAboutSecurity%2Fjava-serialization-audit%2F@c2668bb2caa1cca264371111a508fecf1b07d473