alltuu-downloader

Warn

Audited by Socket on May 10, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The stated purpose and network endpoints are mostly coherent for an alltuu album downloader, and installs come from normal sources. The main risk is the requirement to run Chrome Canary with remote debugging, which can expose browser session data and broad local control, plus an unexplained local proxy flag and unpinned npm dependency. No clear credential harvesting or third-party exfiltration is shown, but the execution model is broader than ideal for a simple downloader.

Confidence: 83%Severity: 52%
Audit Metadata
Analyzed At
May 10, 2026, 09:07 AM
Package URL
pkg:socket/skills-sh/chujianyun%2Fskills%2Falltuu-downloader%2F@e00d789bc90a599987be468d85530c4a2549855e
Security Audit — socket — alltuu-downloader