claude-code-restored-runtime

Warn

Audited by Socket on May 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill's functionality mostly matches its purpose, but it asks users to clone and run an unofficial reconstructed Claude-like runtime from a personal repo and feed it GitHub credentials. The main risk is supply-chain trust and credential forwarding into non-upstream code, not confirmed malware or obvious exfiltration.

Confidence: 86%Severity: 72%
Audit Metadata
Analyzed At
May 16, 2026, 10:20 PM
Package URL
pkg:socket/skills-sh/Aradotso%2Fclaude-code-skills%2Fclaude-code-restored-runtime%2F@e0d8956fb3131edd5cfb692d67d07df979cf17a2
Security Audit — socket — claude-code-restored-runtime