devonthink

Warn

Audited by Socket on Apr 2, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Mostly coherent with a DEVONthink automation skill: the command set matches the stated purpose and there is no obvious credential theft or covert exfiltration. Main concerns are transitive plugin/skill installation and the ability to mutate or delete local records; without independent verification of the package/plugin publisher, this is better classified as suspicious than fully benign.

Confidence: 80%Severity: 54%
Audit Metadata
Analyzed At
Apr 2, 2026, 05:52 PM
Package URL
pkg:socket/skills-sh/dvcrn%2Fdevonthink-cli%2Fdevonthink%2F@35af9c1167d4ede9221e2fb774c3f6bedfe24f14
Security Audit — socket — devonthink