eliteforge-agent-must-known

Warn

Audited by Socket on May 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is broadly consistent with an internal developer-environment bootstrapper, and most file access and configuration changes are proportionate to that purpose. The main concern is install/execution trust around the optional internal CLI path and unspecified private/internal package sources: they are plausible for an enterprise setup but not verifiable from the provided skill text. No clear credential theft or exfiltration behavior is described, so this is not malicious, but it carries medium security risk due to broad system modification and partially opaque dependency provenance.

Confidence: 80%Severity: 61%
Audit Metadata
Analyzed At
May 13, 2026, 02:38 PM
Package URL
pkg:socket/skills-sh/CloudSen%2Feliteforge-skills%2Feliteforge-agent-must-known%2F@1a2023b4e46d8be65f3ded456e4e8facfae73592