humanize

Warn

Audited by Socket on Jul 15, 2026

1 alert found:

Security
SecurityMEDIUM
.clawnet/unsigned-skill.json

The provided artifact contains a highly suspicious, unusually large encoded payload that includes explicit adversarial instruction text aimed at bypassing safeguards and coercing/controlling downstream AI/evaluation/agent behavior, with sabotage-style directives (delete/kill/terminate) also present. While this fragment alone does not show network/process/host actions, it represents a serious supply-chain risk because downstream tooling may decode and act on these embedded directives. Treat as high-risk and investigate the consuming code paths that decode `opReturnHex` and how `files[]` and signature-like fields are used.

Confidence: 63%Severity: 86%
Audit Metadata
Analyzed At
Jul 15, 2026, 10:50 PM
Package URL
pkg:socket/skills-sh/b-open-io%2Fprompts%2Fhumanize%2F@87a6e08ed9e1c3da9fbbf004ebf42077dc1885debd60d0385d31277b4f8181c8
Security Audit — socket — humanize