pentest-commands

Warn

Audited by Socket on Sep 14, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent as a pentest command reference, but its actual footprint is inherently high-risk because it equips an AI agent to perform offensive security actions, generate payloads, brute-force services, crack credentials, and capture sensitive traffic. There are no obvious third-party credential-harvesting endpoints or suspicious installers in the provided content, so this is not confirmed malware; it is a high-risk offensive capability skill.

Confidence: 91%Severity: 86%
Audit Metadata
Analyzed At
Sep 14, 2026, 03:41 PM
Package URL
pkg:socket/skills-sh/zebbern%2Fclaude-code-guide%2Fpentest-commands%2F@149ccd5fa223cd2b660c2b0ef0b4de58d936e685ed83a065ea87739eea3e02a4
Security Audit — socket — pentest-commands