http-parameter-pollution
Warn
Audited by Socket on Sep 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill is internally consistent as an HPP testing guide and shows no credential theft, covert behavior, or malicious install path, but it equips an AI agent with offensive security techniques for WAF bypass, SSRF, CSRF, and logic abuse. Treat as high-risk security tooling rather than confirmed malware.
Confidence: 94%Severity: 78%
Audit Metadata