hunt-http-smuggling

Warn

Audited by Socket on Aug 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK as an AI agent skill: its purpose is coherent, but that purpose is offensive security testing. The main concern is enabling an agent to run exploit probes and related validation against remote targets, with additional supply-chain risk from third-party smuggling tools. No clear credential theft or hidden exfiltration is present in the skill text itself, so this is high-risk capability rather than confirmed malware.

Confidence: 90%Severity: 86%
Audit Metadata
Analyzed At
Aug 27, 2026, 05:31 AM
Package URL
pkg:socket/skills-sh/xiaolai%2Fclaude-bughunter%2Fhunt-http-smuggling%2F@beca42b29019649292f828ed2a8215232a745ad1d3e57cc511877415507ae3e9
Security Audit — socket — hunt-http-smuggling