okta-attack
Warn
Audited by Socket on Aug 27, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS/HIGH-RISK. The skill is internally coherent as an Okta red-team playbook and mostly uses official Okta endpoints, so it is not disguised credential theft or supply-chain malware. However, it gives an AI agent explicit offensive security capabilities against real external targets, including password spraying, MFA abuse checks, and post-compromise admin enumeration, which makes it a high-risk agent skill.
Confidence: 95%Severity: 93%
Audit Metadata