rageprompt

Warn

Audited by Socket on Jul 17, 2026

2 alerts found:

Securityx2
SecurityMEDIUM
scripts/collect-history.mjs

This module is best characterized as a sensitive local data harvesting/scraping tool for AI/editor chat history. It performs broad discovery and extraction of user prompts across many installed products, uses heuristic redaction that can be disabled, and then outputs the collected content to stdout. While it does not demonstrate classic malware behaviors (no network calls, no persistence, no reverse shells) in this fragment, the privacy/data-theft risk is substantial due to the intentional collection and export of potentially sensitive conversation text.

Confidence: 78%Severity: 78%
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s stated purpose matches its behavior, but that behavior is inherently privacy-invasive: it mass-reads local AI histories across many tools and publishes selected content to an external, weakly verifiable domain. The main risk is data exfiltration and autonomous public posting, not confirmed malware.

Confidence: 88%Severity: 78%
Audit Metadata
Analyzed At
Jul 17, 2026, 04:44 PM
Package URL
pkg:socket/skills-sh/AgnostAI%2Fragecode%2Frageprompt%2F@2e117a2e0b5a3984492ba1a039c47289604edd2e2549a38916a3dbc406248144
Security Audit — socket — rageprompt