subdomain-takeover
Warn
Audited by Socket on Sep 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill is internally coherent, but it equips an AI agent to perform offensive security actions with real-world impact, including subdomain claiming, NS takeover, and MX-based email interception. There is little evidence of malware or credential theft by the skill itself, yet the operational risk is high because the skill’s purpose is exploitation against external targets.
Confidence: 92%Severity: 83%
Audit Metadata