headless-ghidra-discovery

Warn

Audited by Socket on May 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill’s behavior is purpose-aligned and locally scoped, with no obvious credential theft or exfiltration path. However, it is fully dependent on an unverifiable required CLI (ghidra-agent-cli), so install/execution trust is high risk under the skill-scoring rules.

Confidence: 89%Severity: 78%
Audit Metadata
Analyzed At
May 1, 2026, 12:53 AM
Package URL
pkg:socket/skills-sh/ByteLandTechnology%2Fheadless-ghidra%2Fheadless-ghidra-discovery%2F@bdb93d27cfdfadcd112e47778cbd076b214e0130