shader-extract

Warn

Audited by Socket on Aug 23, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The skill is coherent with its stated purpose, but it carries moderate security risk from delegated vendored logic, reliance on third-party capture tooling, and processing untrusted web content into local artifacts. No clear credential harvesting or malicious exfiltration is evident, but the WebGPU capture path and mutable script references make this better classified as suspicious than fully benign.

Confidence: 82%Severity: 57%
Audit Metadata
Analyzed At
Aug 23, 2026, 06:04 AM
Package URL
pkg:socket/skills-sh/cth9191%2Fsite-clone%2Fshader-extract%2F@f2b6c78214ed5d2e45d0c9eac763f634ee1946f9cf042a9b4e6ebf7972ea24f0
Security Audit — socket — shader-extract