debug-tauri

Warn

Audited by Socket on Aug 24, 2026

1 alert found:

Security
SecurityMEDIUM
skill-report.json

No explicit malicious payload behavior (backdoor, credential theft, or confirmed network exfiltration) is visible in the provided fragment. However, the workflow and referenced scripts heavily enable privacy-sensitive screen/UI capture (potentially broad scope) and assemble screenshots/logs/WebView state into structured debug reports, creating significant risk of sensitive-data disclosure if redaction and capture scoping are not enforced. Additionally, an unusual documentation link escapes into a hidden planning directory, which is a noteworthy agent-guidance/integrity red flag. Overall: treat as high privacy/sensitive-data risk requiring strict consent, least-privilege capture scoping, and enforced redaction before sharing.

Confidence: 63%Severity: 76%
Audit Metadata
Analyzed At
Aug 24, 2026, 08:11 PM
Package URL
pkg:socket/skills-sh/aiskillstore%2Fmarketplace%2Fdebug-tauri%2F@ab7ff25209366990a7d09db577fda109ed43d7c9163d6fb25aefdf03ef7f89b8
Security Audit — socket — debug-tauri