llm-security
Warn
Audited by Socket on Aug 12, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally coherent as an LLM red-team skill, but its actual footprint is inherently high risk because it equips the agent with offensive security techniques, prompt extraction behavior, and indirect prompt-injection workflows. Install trust is mostly acceptable via official registries, though unpinned packages and ambiguous GitHub tooling raise moderate supply-chain concern.
Confidence: 92%Severity: 86%
Audit Metadata