hunt-cache-poison

Warn

Audited by Socket on Aug 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. It is internally consistent as an offensive cache-poisoning hunting guide, but that stated purpose itself gives an AI agent actionable exploit-testing capability against arbitrary targets, including WAF bypass, authenticated cache deception, and production-impact validation. No strong malware or supply-chain indicators are present, but the offensive-security nature makes the skill high risk.

Confidence: 93%Severity: 86%
Audit Metadata
Analyzed At
Aug 27, 2026, 05:32 AM
Package URL
pkg:socket/skills-sh/xiaolai%2Fclaude-bughunter%2Fhunt-cache-poison%2F@c0cd1aa3a1c541aaa4a01e4f202498ee68491c69480f43b81073a6d2a7d9309c
Security Audit — socket — hunt-cache-poison