competition-linux-credential-pivot

Warn

Audited by Socket on Jul 30, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK: the skill is internally coherent for a CTF sandbox credential-pivot purpose, but that purpose itself gives an AI agent offensive security capabilities: inspecting secrets, replaying credentials, and mapping lateral movement. There is no clear exfiltration or malware behavior in the text, but the capability set is high risk and should be tightly sandboxed and approval-gated.

Confidence: 89%Severity: 76%
Audit Metadata
Analyzed At
Jul 30, 2026, 12:52 PM
Package URL
pkg:socket/skills-sh/zhaoxuya520%2Fai-fullstack-delivery-workflow%2Fcompetition-linux-credential-pivot%2F@74e83a9c42784bb05aee7c76a8bc9c91125b13fa0e5c5e68ff035c6c1adb4f63
Security Audit — socket — competition-linux-credential-pivot