bb-methodology

Warn

Audited by Socket on Aug 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is purpose-aligned as a bug bounty methodology, but it is inherently high risk because it equips an AI agent for offensive security operations against live targets, including reconnaissance, exploitation, OOB testing, and escalation. It does not show clear credential theft or hidden malware behavior, but it should be classified as suspicious/high-risk due to offensive-agent capabilities and transitive routing to additional skills.

Confidence: 89%Severity: 86%
Audit Metadata
Analyzed At
Aug 27, 2026, 05:31 AM
Package URL
pkg:socket/skills-sh/xiaolai%2Fclaude-bughunter%2Fbb-methodology%2F@f463898a013c95d457a1d2392d459e95596d2acf9195a4b3cb18d064c94ffb7d
Security Audit — socket — bb-methodology