rivetkit

Warn

Audited by Socket on Aug 26, 2026

1 alert found:

Anomaly
AnomalyLOW
openapi.json

No malicious code or supply-chain payload is present in this declarative fragment. The API specification exposes high-impact actor forwarding, state mutation, and action execution capabilities. Optional inspector authentication and unrestricted parameters warrant security review of the implementation, authorization, path validation, and production configuration. Findings are limited because the implementation is not provided.

Confidence: 98%Severity: 62%
Audit Metadata
Analyzed At
Aug 26, 2026, 11:06 PM
Package URL
pkg:socket/skills-sh/felipeangeli%2Fskills%2Frivetkit%2F@ddba4a5a242957b64ff13868a29606102637089400c4a4b5092a4223531180e8
Security Audit — socket — rivetkit