ai-music-generation

Warn

Audited by Socket on Jun 19, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core purpose and data flow are mostly coherent for hosted AI music generation, and the installer/auth paths appear tied to inference.sh. However, the skill uses transitive skill installation, a curl|sh-capable external CLI path, and broad Bash tooling, which makes the trust footprint larger than a simple music-generation helper.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Jun 19, 2026, 02:15 AM
Package URL
pkg:socket/skills-sh/halt-catch-fire%2Fskills%2Fai-music-generation%2F@8ce50e067c9254facca9693c093cc1967414375db33ff00fa03d3284d6d44e34
Security Audit — socket — ai-music-generation