hunt-misc

Warn

Audited by Socket on Aug 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. It is internally coherent as an offensive bug-hunting playbook, but it equips an AI agent to conduct live exploitation and probing against arbitrary targets, including auth bypass, SSRF, token abuse, and SAML attacks. No strong supply-chain concerns were found, but the offensive capability alone makes it high risk.

Confidence: 94%Severity: 90%
Audit Metadata
Analyzed At
Aug 27, 2026, 05:32 AM
Package URL
pkg:socket/skills-sh/xiaolai%2Fclaude-bughunter%2Fhunt-misc%2F@8fd43f408e8dda6a14e6b9ba0f375203dffc706cd6c9ad50f21b8004e298e67f
Security Audit — socket — hunt-misc