wordpress-penetration-testing
Warn
Audited by Socket on Sep 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS/HIGH-RISK skill. The content is internally consistent with its stated purpose, and referenced tools are legitimate, but that purpose is to give an AI agent offensive security capabilities: scanning, credential attacks, exploitation, and shell access against WordPress targets. No clear publisher-side credential harvesting or hidden exfiltration is present, but the autonomous attack guidance, reverse-shell payloads, and TLS-check disabling make the skill dangerous and inappropriate for general agent use.
Confidence: 92%Severity: 86%
Audit Metadata