0xinsider-api-access

Warn

Audited by Socket on Sep 14, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The core API/MCP access behavior is mostly coherent and routes data to same-org 0xinsider hosts, but the local CLI install instructions appear inconsistent with the vendor's documented package name. That mismatch makes the supply-chain footprint broader and less trustworthy than the stated purpose warrants, though there is no strong evidence of credential theft or malicious exfiltration.

Confidence: 86%Severity: 58%
Audit Metadata
Analyzed At
Sep 14, 2026, 06:49 PM
Package URL
pkg:socket/skills-sh/0xinsider%2Fagent-plugin%2F0xinsider-api-access%2F@c80520f2495a6922a7289fe1da27ce6b36700fdba279e7821f7c393b2d6ff8e4
Security Audit — socket — 0xinsider-api-access