hunt-csrf

Warn

Audited by Socket on Aug 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. It is internally consistent as a CSRF hunting guide and shows no malware-like installer, exfiltration, or hidden execution, but it equips an AI agent with offensive security techniques for arbitrary external targets. Main concern is exploit capability and use of authenticated session material, not supply-chain abuse or covert credential theft.

Confidence: 91%Severity: 81%
Audit Metadata
Analyzed At
Aug 27, 2026, 05:32 AM
Package URL
pkg:socket/skills-sh/xiaolai%2Fclaude-bughunter%2Fhunt-csrf%2F@eb51c8da7f0bdbe02732b4f63a6136ddb5d00b77eebcd553a41dcc63619b4bb5
Security Audit — socket — hunt-csrf