hunt-business-logic
Warn
Audited by Socket on Aug 27, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. This skill is internally consistent as a business-logic hunting guide, but its actual function is to give an AI agent offensive security procedures for arbitrary third-party targets, including payment tampering, webhook forgery tests, and rate-limit bypass attempts. There is little malware or supply-chain evidence, yet the skill is high risk because the capability itself is an agentic exploit workflow with real-world impact and some transitive skill-chaining guidance.
Confidence: 90%Severity: 86%
Audit Metadata