frida

Warn

Audited by Socket on Aug 29, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK but not confirmed malware. The install path is mostly coherent and official, but the skill’s core purpose is to give an AI agent offensive runtime instrumentation powers, including SSL-unpinning, process hooking, and secret/sink observation across local and remote targets. That footprint is dangerous by design for an autonomous agent, even though the data-flow warnings are explicit and there is no clear credential-harvesting behavior.

Confidence: 90%Severity: 88%
Audit Metadata
Analyzed At
Aug 29, 2026, 08:15 PM
Package URL
pkg:socket/skills-sh/gadievron%2Fraptor%2Ffrida%2F@60df8aec799ecb7ec00133e11f205bc8a3c8cc77
Security Audit — socket — frida