faion

Warn

Audited by Socket on Jun 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s general purpose is plausible, but it uses pre-execution shell execution at load time, broad Python shell permissions, and an unverified local helper script that reads session context and repository files. There is no clear evidence of credential theft or external exfiltration, so this is not confirmed malware, but the execution model and scope are riskier than a normal documentation/retrieval skill.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
Jun 13, 2026, 11:19 AM
Package URL
pkg:socket/skills-sh/faionfaion%2Ffaion-network%2Ffaion%2F@48cb31f9e6884ed786585f6bb39cefc889c4c7b32857a2d3823a2c730c7ffa52
Security Audit — socket — faion