mid-engagement-ir-detection

Warn

Audited by Socket on Aug 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK as an AI agent skill, but not confirmed malware. Its behavior is coherent with its stated red-team purpose, and there is no installer abuse or obvious credential exfiltration. The main concern is that it equips an agent for offensive security operations against live targets, includes TLS verification bypass in examples, and processes untrusted target data while suggesting executable workflows.

Confidence: 90%Severity: 82%
Audit Metadata
Analyzed At
Aug 27, 2026, 05:32 AM
Package URL
pkg:socket/skills-sh/xiaolai%2Fclaude-bughunter%2Fmid-engagement-ir-detection%2F@582b4dbac130eb67f114c98cd086989e214fe37d8b97300d3655f3949c581783
Security Audit — socket — mid-engagement-ir-detection