vibenet

Warn

Audited by Socket on Aug 14, 2026

2 alerts found:

Anomalyx2
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s purpose and Base data flows are mostly coherent, but it expands trust by requiring a setup script, a GitHub fork build, and a transitive skill installer. This looks like a legitimate developer guide with medium supply-chain risk rather than confirmed malware.

Confidence: 84%Severity: 56%
AnomalyLOW
scripts/setup-viem-8130.sh

No explicit malicious logic (e.g., backdoor/persistence/exfiltration) is present in this Bash fragment itself. However, the script performs a high-trust supply-chain operation: it can be redirected via VIEM_FORK_REPO/VIEM_FORK_BRANCH to clone arbitrary remote code, then executes pnpm install/build from that fetched code, and finally installs the resulting artifacts into the application. The primary risk is compromise or tampering of the fetched fork/branch or its dependency tree, not overt malware embedded in the script.

Confidence: 62%Severity: 64%
Audit Metadata
Analyzed At
Aug 14, 2026, 05:13 PM
Package URL
pkg:socket/skills-sh/base%2Fskills%2Fvibenet%2F@4926fc64ef605abfe2a1ed0b2aa2af6b951658cb8eee6f41a5606b0fd7c78c41
Security Audit — socket — vibenet