exploit-chain-building

Warn

Audited by Socket on Sep 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent, but its stated purpose is to help an AI agent build offensive exploit chains culminating in account takeover, credential theft, cloud compromise, and exfiltration. There is no major install-trust issue or deceptive credential routing, yet the operational capability is high risk because it enables real-world offensive security actions beyond a normal developer workflow.

Confidence: 95%Severity: 87%
Audit Metadata
Analyzed At
Sep 27, 2026, 03:30 PM
Package URL
pkg:socket/skills-sh/woohyun212%2Fsecurity-skill%2Fexploit-chain-building%2F@b7de579361c4df5d1bb8b8d88c85b2a76a967813d92230cc62db21bab8b5f961
Security Audit — socket — exploit-chain-building