flight-search-strategy

Warn

Audited by Socket on May 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: as a reference skill, its footprint is broader than necessary because it includes commands that execute an unverifiable external container and forward live Southwest credentials to it, while also directing the agent to chain into other skills. The flight-search guidance itself is plausible, but the credentialed GHCR container and transitive tool orchestration make the overall skill high risk.

Confidence: 87%Severity: 86%
Audit Metadata
Analyzed At
May 1, 2026, 11:26 AM
Package URL
pkg:socket/skills-sh/borski%2Ftravel-hacking-toolkit%2Fflight-search-strategy%2F@86762a2cde7cccee836e9c56b143c65750971733
Security Audit — socket — flight-search-strategy