wxmini-security-audit

Warn

Audited by Socket on May 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s stated purpose and included scripts are internally coherent and mostly local-only, but it materially relies on a manually supplied third-party executable from an unrelated source and equips the agent with security-audit capabilities. No direct credential theft or exfiltration is evident, so this is high security risk rather than confirmed malware.

Confidence: 87%Severity: 78%
Audit Metadata
Analyzed At
May 17, 2026, 03:14 AM
Package URL
pkg:socket/skills-sh/Aradotso%2Fsecurity-skills%2Fwxmini-security-audit%2F@c59b7bf5a204f3d88de380e99cffbc39284e72c9
Security Audit — socket — wxmini-security-audit