cml-packet-capture

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s capabilities are mostly aligned with its stated CML packet-capture purpose, and data appears to flow to the configured CML instance rather than an obvious exfiltration service. The main concern is install/execution trust: it depends on a third-party MCP package from PyPI associated with a personal GitHub account, plus cross-skill handoffs that expand the trust chain. This looks more like a moderately risky but plausibly legitimate operational skill than confirmed malicious behavior.

Confidence: 83%Severity: 58%
Audit Metadata
Analyzed At
Mar 18, 2026, 06:13 AM
Package URL
pkg:socket/skills-sh/automateyournetwork%2Fnetclaw%2Fcml-packet-capture%2F@0f6bc56e16dc8cf0efdf316f85857910d86ae1f2
Security Audit — socket — cml-packet-capture