supply-chain-attack-recon
Warn
Audited by Socket on Aug 27, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS/HIGH-RISK skill. Its stated purpose is coherent, but the purpose itself is offensive security reconnaissance for AI agents against external targets. Install provenance is mostly acceptable and data flows are mostly to official services, so this is not confirmed malware; however, the skill materially increases an agent’s ability to discover and operationalize supply-chain attack paths, process untrusted external content, and handle potentially sensitive findings.
Confidence: 93%Severity: 84%
Audit Metadata