monitor-memory

Warn

Audited by Socket on Mar 17, 2026

2 alerts found:

Anomalyx2
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s purpose mostly matches a monitoring/orchestration role, and its documented data flows are local, but it has a high-risk always-on autonomous control loop with auto-repair via Bash and relies on unverified internal CLIs. This is not confirmed malware, but it is a high-trust operational skill that should only run in a tightly controlled environment with explicit user approval and verified local dependencies.

Confidence: 87%Severity: 68%
AnomalyLOW
probes/tier4_projects.py

The code is not itself intentionally malicious, but it presents a significant local supply-chain risk: it executes arbitrary project-supplied scripts with the probe process privileges and reads their outputs into results. Malicious or tampered project scripts can exfiltrate data, modify the system, or perform other harmful actions. Recommend running these probes only against trusted projects or executing them inside a strong sandbox (container or restricted user) and adding integrity/allowlist checks for project scripts. Avoid relying solely on timeouts and captured output truncation as security controls.

Confidence: 75%Severity: 60%
Audit Metadata
Analyzed At
Mar 17, 2026, 06:44 AM
Package URL
pkg:socket/skills-sh/grahama1970%2Fagent-skills%2Fmonitor-memory%2F@b45f8634b9b21054961cec0decd6d7e7c68522bf
Security Audit — socket — monitor-memory