ttttt

Warn

Audited by Socket on Sep 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is internally consistent with its stated purpose of tmux session control, and it uses only standard system tools with no external installer or credential-forwarding binary. However, its actual capability is powerful: it can read full terminal history, inject arbitrary commands, and operate on remote hosts via ssh/scp. Those permissions are proportionate to a terminal takeover skill but still create medium-high operational risk, especially because capture-pane may expose sensitive terminal content and send-keys can execute arbitrary shell actions.

Confidence: 91%Severity: 66%
Audit Metadata
Analyzed At
Sep 13, 2026, 11:49 AM
Package URL
pkg:socket/skills-sh/clericpy%2Fcoding-skills%2Fttttt%2F@f915f6e126253167b01b451065941b5494f5429d23577e47a3816ad2e6cfa5fa
Security Audit — socket — ttttt