file-access-vuln

Warn

Audited by Socket on Sep 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the file itself is a benign-looking router with no direct exfiltration or installer abuse, but its stated purpose is to enable AI-driven vulnerability testing and it expands into linked offensive-security skills. Risk is driven by capability domain and transitive skill chaining, not by malware-like behavior in this snippet.

Confidence: 90%Severity: 74%
Audit Metadata
Analyzed At
Sep 15, 2026, 02:13 PM
Package URL
pkg:socket/skills-sh/yaklang%2Fhack-skills%2Ffile-access-vuln%2F@3c7000bb8c34271a6a6fd60a61d71a337260f16899cafe3d935b4af7ddd05012
Security Audit — socket — file-access-vuln