web3-smart-contract

Warn

Audited by Socket on Aug 19, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally coherent and mostly uses official tooling, but it materially equips an AI agent with offensive security capabilities by generating exploit PoCs and running audit workflows against smart contracts. No clear credential harvesting or exfiltration is present; the main risks are agent-enabled security testing and the official-but-risky Foundry curl|bash bootstrap.

Confidence: 89%Severity: 78%
Audit Metadata
Analyzed At
Aug 19, 2026, 06:16 AM
Package URL
pkg:socket/skills-sh/woohyun212%2Fsecurity-skill%2Fweb3-smart-contract%2F@7ec0f7edd6f57e155553fde68317623514b55c7b2f7195e7161fe6660d4cb483
Security Audit — socket — web3-smart-contract