benchmark-models

Warn

Audited by Socket on May 20, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core benchmark behavior is plausible and same-ecosystem, but the actual skill footprint is much broader than its stated purpose. The oversized gstack preamble adds direct credential-file checks, telemetry/sync paths, and even project-modifying git workflows that do not belong in a simple cross-model benchmark skill.

Confidence: 86%Severity: 68%
Audit Metadata
Analyzed At
May 20, 2026, 05:21 PM
Package URL
pkg:socket/skills-sh/garrytan%2Fgstack%2Fbenchmark-models%2F@b6010d162c69e1db87c875209cd6d65b7eb4a98a
Security Audit — socket — benchmark-models