ghost-proxy

Warn

Audited by Socket on Sep 29, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent for a MITM proxy, but it gives an AI agent high-risk offensive traffic interception capability, stores full captured traffic locally, and uses a curl|bash installer without strong artifact verification. This looks like a legitimate same-org security tool rather than credential theft malware, but its operational footprint is inherently dangerous and should be treated as high risk.

Confidence: 83%Severity: 74%
Audit Metadata
Analyzed At
Sep 29, 2026, 01:32 PM
Package URL
pkg:socket/skills-sh/ghostsecurity%2Fskills%2Fghost-proxy%2F@249e3d8900be02a1c666e965e16ffb8030089bd53e20f9581f645923d9a711fe
Security Audit — socket — ghost-proxy