investigate

Warn

Audited by Socket on Oct 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The stated debugging purpose broadly matches the workflow, but the skill's footprint is disproportionately dependent on unverifiable local gstack executables that read project context, emit instructions, and log telemetry/learnings. No confirmed credential theft or overt exfiltration is shown, yet install/execution trust is weak enough to classify this as high security risk rather than benign.

Confidence: 87%Severity: 82%
Audit Metadata
Analyzed At
Oct 1, 2026, 07:28 PM
Package URL
pkg:socket/skills-sh/garrytan%2Fgstack%2Finvestigate%2F@348a8ef842204da56d84a98a8ea2fe1b82d331fcae628d7aa0635528c4e1d718
Security Audit — socket — investigate