open-redirect
Warn
Audited by Socket on Sep 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill's footprint is coherent with its stated purpose, but that purpose is to give an AI agent offensive exploitation guidance. It materially increases capability for phishing, token theft, and SSRF without defensive constraints, so it is high security risk even though it lacks malware-like installers or hidden exfiltration code.
Confidence: 94%Severity: 89%
Audit Metadata