red-team-assessment

Warn

Audited by Socket on Apr 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent, but its stated purpose is to enable offensive security operations by an AI agent. There is no clear credential-harvesting or malicious exfiltration behavior in the text, yet the capability set—recon, scanning, exploit validation, post-exploitation delegation, and transitive skill use—is inherently high risk and inappropriate for a general-purpose agent without strict human authorization and containment.

Confidence: 90%Severity: 86%
Audit Metadata
Analyzed At
Apr 22, 2026, 08:00 AM
Package URL
pkg:socket/skills-sh/wgpsec%2FAboutSecurity%2Fred-team-assessment%2F@3a7f5695c1c431041b9c3b9abcc2039ea03d2895