ke

Warn

Audited by Socket on Sep 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s stated purpose is coherent with local memory and research, and the flagged `rm -rf` is likely benign documentation. However, the main risk is install/execution trust: the core `ke` binary is an unverified local executable with web-fetch capability and background-hook integration, so the skill’s footprint cannot be fully assessed or trusted from the provided evidence.

Confidence: 87%Severity: 74%
Audit Metadata
Analyzed At
Sep 20, 2026, 08:53 PM
Package URL
pkg:socket/skills-sh/a-canary%2Farc-skills%2Fke%2F@0919371dc4049ae5774f2362251fdd339e42e33b1f2d3390c1c5b6146ecf1200
Security Audit — socket — ke