hunt-rce

Warn

Audited by Socket on Aug 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent as an RCE hunting playbook, but its actual footprint is high-risk offensive security enablement for an AI agent. It teaches exploit execution, secret/file access, TLS bypass, and outbound OOB exfiltration via known capture services against arbitrary targets, which is disproportionate for normal developer assistance and unsafe to grant broadly.

Confidence: 96%Severity: 94%
Audit Metadata
Analyzed At
Aug 27, 2026, 05:33 AM
Package URL
pkg:socket/skills-sh/xiaolai%2Fclaude-bughunter%2Fhunt-rce%2F@1e8cb592464d8576ffbe696ba591ab50ea10c70ed7ebf80667bcda30b9614562
Security Audit — socket — hunt-rce