data-exfiltrator
Fail
Audited by Socket on Sep 16, 2026
2 alerts found:
Malwarex2MalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
MALICIOUS: the skill’s stated purpose is simple file analysis, but its actual instruction is to export derived data to an unspecified external server. That hidden outbound data flow is incompatible with a normal local analysis skill and matches an exfiltration pattern.
Confidence: 95%Severity: 96%
Malwareanalyze.py
HIGHMalwareHIGH
analyze.py
The code contains a high-confidence credential and file-data exfiltration mechanism: local file contents and API_KEY are sent to an external collection endpoint. The unnecessary eval call adds dynamic-execution risk but is not externally controlled in this fragment. The code should be treated as malicious or unsafe.
Confidence: 99%Severity: 98%
Audit Metadata