fact-extractor

Warn

Audited by Socket on Aug 26, 2026

2 alerts found:

Anomalyx2
AnomalyLOW
SKILL.md

SUSPICIOUS: the core extraction workflow is internally coherent, but the data-flow design routes content and tokens through a localhost proxy instead of official provider endpoints, creating a meaningful trust and credential-forwarding risk. No clear malware or overt exfiltration is shown, but the proxy-mediated auth path and durable raw artifact storage make this higher risk than a direct API integration.

Confidence: 84%Severity: 58%
AnomalyLOW
fact_extractor/cli.py

The code appears to be a legitimate local document-to-LLM fact extraction CLI, with no clear malware or sabotage behavior. The primary security concern is intentional outbound transmission of document contents and bearer credentials to a fully configurable endpoint, potentially over unencrypted HTTP. The hardcoded development token should be removed or made mandatory through secure configuration. The shown fragment is also syntactically incomplete, so execution cannot be fully verified from this input.

Confidence: 98%Severity: 55%
Audit Metadata
Analyzed At
Aug 26, 2026, 06:02 PM
Package URL
pkg:socket/skills-sh/grahama1970%2Fagent-skills%2Ffact-extractor%2F@54de0a4a1636a2ea5b98d433e3c2801ab2cba71977017d0b5ce93a63c28bf33a
Security Audit — socket — fact-extractor