subdomain-deep

Warn

Audited by Socket on Apr 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

该技能与其宣称目的基本一致,没有明显伪装、隐蔽窃密或恶意中转迹象;但它明确让 AI 代理执行安全侦察/资产发现,并处理外部不可信内容,属于高风险 offensive security 能力。综合判断为 SUSPICIOUS:非明显恶意,但不应在普通代理环境中默认启用。

Confidence: 86%Severity: 78%
Audit Metadata
Analyzed At
Apr 22, 2026, 10:10 AM
Package URL
pkg:socket/skills-sh/wgpsec%2FAboutSecurity%2Fsubdomain-deep%2F@b14f45b4812af9c618c06ba0d9a8e36a49053aea