splunk-saved
Warn
Audited by Socket on Jul 30, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s purpose is legitimate, but its execution path is not well aligned with official Splunk distribution: it uses runtime `npx` execution and likely third-party bridge code while handling raw Splunk credentials. The main risk is credential forwarding and unverifiable package provenance, not confirmed malware.
Confidence: 88%Severity: 78%
Audit Metadata