php-injection-audit

Warn

Audited by Socket on May 4, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The skill is internally consistent and does not show malware-like behavior, credential theft, exfiltration, or suspicious installers. Its main risk is that it equips an AI agent with structured offensive vulnerability-auditing capability and depends on another skill for evidence, so it is best classified as suspicious/high-risk security tooling rather than malicious.

Confidence: 86%Severity: 68%
Audit Metadata
Analyzed At
May 4, 2026, 08:18 AM
Package URL
pkg:socket/skills-sh/wgpsec%2FAboutSecurity%2Fphp-injection-audit%2F@ab557668f7f8aa7572e76622e32efe8f05cd7fab