kasm

Fail

Audited by Socket on Apr 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
references/workspace-configuration.md

No direct malicious code is present; the fragment is documentation/config examples. However, it explicitly instructs enabling passwordless sudo for the default container user and provides a first-launch shell execution mechanism. Combined with rw host bind mounts and optional isolation-weakening overrides, these features materially increase impact if an attacker can influence configuration or gain workspace access. Treat this as a high operational-security configuration surface rather than evidence of packaged malware.

Confidence: 98%
Audit Metadata
Analyzed At
Apr 10, 2026, 08:15 AM
Package URL
pkg:socket/skills-sh/evolv3-ai%2Fvibe-skills%2Fkasm%2F@6bc82933adabae919c3df14d8a34e8e15aa362dd
Security Audit — socket — kasm