flow-nexus-platform

Fail

Audited by Socket on Apr 2, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

SUSPICIOUS: the skill is broadly consistent with a cloud platform management interface, and the publisher/install evidence looks same-ecosystem rather than obviously deceptive. However, the scope is very broad and high-impact: it combines remote code execution, deployment, storage, payments, and tool-enabled assistant actions, with secrets forwarded into third-party sandboxes. This is not confirmed malware, but it is a medium-high risk skill that would require strong user approval and guardrails.

Confidence: 84%Severity: 68%
Audit Metadata
Analyzed At
Apr 2, 2026, 07:17 AM
Package URL
pkg:socket/skills-sh/dnyoussef%2Fai-chrome-extension%2Fflow-nexus-platform%2F@36b562ffe4d68bec1b91ce721014667832b55f65