flipper-zero

Warn

Audited by Socket on Sep 5, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill is internally consistent and uses mostly official tooling, but its stated purpose includes offensive-capable workflows: BadUSB keystroke injection, Sub-GHz transmission, and hardware control. There is no strong evidence of malware or credential theft, yet the skill gives an AI agent practical attack-adjacent capabilities with real-world effects, so overall risk is high.

Confidence: 87%Severity: 78%
Audit Metadata
Analyzed At
Sep 5, 2026, 10:42 PM
Package URL
pkg:socket/skills-sh/aeondave%2Fmalskill%2Fflipper-zero%2F@789e6dedb52c40712b838dc5530983d2dc9c9371041ae9abe473ae31a00d1a56
Security Audit — socket — flipper-zero