rterm-discovery

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the core discovery/CMDB capabilities mostly fit the stated purpose, but the skill has a very large operational footprint: broad network scanning, multi-protocol remote access, numerous credential types, centralized inventory collection, and autonomous trigger/remediation paths. No clear malicious exfiltration endpoint is shown, so this is not confirmed malware, but it is a high-risk infrastructure skill that exceeds a narrow read-only inventory role in practice.

Confidence: 82%Severity: 78%
Audit Metadata
Analyzed At
Jul 31, 2026, 07:22 PM
Package URL
pkg:socket/skills-sh/DrOlu%2Fagent-skills%2Frterm-discovery%2F@599d7e20f499d57bf9d6fd55257e012d3c1f8d80071893cee216ebf989ac7202
Security Audit — socket — rterm-discovery