variant-analysis

Warn

Audited by Socket on Apr 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

BENIGN for internal consistency, but high-risk in capability class: the skill’s stated purpose matches its behavior, and it does not exfiltrate data or harvest credentials, yet it enables AI-assisted security variant hunting with Bash and Write access. Treat as a legitimate but security-sensitive offensive-analysis skill.

Confidence: 92%Severity: 72%
Audit Metadata
Analyzed At
Apr 2, 2026, 09:53 AM
Package URL
pkg:socket/skills-sh/elizaOS%2Feliza%2Fvariant-analysis%2F@fdd0da8d7a5620bf46f98b49a406b658a3d80c2a