ops-fires

Warn

Audited by Socket on Apr 29, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The incident-response purpose mostly matches the capabilities, and most network flows target official services, but the skill relies on opaque local executables and an arbitrary secret-retrieval shell hook. Those two design choices make the footprint broader and less trustworthy than needed for a dashboard skill, so it should be treated as high security risk but not confirmed malware.

Confidence: 88%Severity: 82%
Audit Metadata
Analyzed At
Apr 29, 2026, 06:50 AM
Package URL
pkg:socket/skills-sh/davepoon%2Fbuildwithclaude%2Fops-fires%2F@f94b2bf429471f3a2f6a2e31969d739055733227