test-ui

Warn

Audited by Socket on Apr 10, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core QA purpose is legitimate and mostly aligned with the described capabilities, but the skill handles authentication unsafely by asking users to manually extract raw cookies/tokens and pass them to scripts via CLI. It also expands trust by activating other skills and processing untrusted web content with write-capable tooling. No direct exfiltration endpoint or clearly malicious behavior is shown in this excerpt, so this is medium risk rather than confirmed malware.

Confidence: 84%Severity: 63%
Audit Metadata
Analyzed At
Apr 10, 2026, 07:28 AM
Package URL
pkg:socket/skills-sh/duc01226%2Feasyplatform%2Ftest-ui%2F@3c6a9e84094d721146676d986f54d57195e4ad4a
Security Audit — socket — test-ui