mobile-app-flows

Warn

Audited by Socket on Mar 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s stated purpose mostly matches its mobile-testing capabilities, and use of adb/flutter is expected. The main issue is trust: it requires an unverifiable `agent-flutter` executable with deep visibility into an authenticated app session, plus commands that modify app/device state and generate potentially sensitive evidence artifacts. I see no confirmed malicious exfiltration, but the install/provenance gap and sensitive app access make this high-risk for an AI agent skill.

Confidence: 84%Severity: 78%
Audit Metadata
Analyzed At
Mar 31, 2026, 09:37 PM
Package URL
pkg:socket/skills-sh/BasedHardware%2FOmi%2Fmobile-app-flows%2F@2c2d99663662103120a820857298d1a86239355b