reverse-engineer-rpi

Warn

Audited by Socket on May 11, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s footprint mostly matches its stated reverse-engineering purpose, and install trust is moderate because it relies on standard GitHub/git workflows with optional ref pinning. The main risk is proportionality and execution scope: it lets an agent analyze untrusted repos/binaries and emit many local artifacts, with optional security-audit/fuzzing behavior. No clear credential theft, covert exfiltration, or malicious data routing is evident, but the capability set is inherently high-risk for agent misuse and prompt-injection exposure.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
May 11, 2026, 10:29 PM
Package URL
pkg:socket/skills-sh/boshu2%2Fagentops%2Freverse-engineer-rpi%2F@dc3f75c41803ce5df581435cd2b60e5d6ff891bb