ida-domain-scripting

Warn

Audited by Socket on May 14, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent for IDA automation and uses an official same-org dependency source, so it does not look like credential theft or covert exfiltration. However, it gives an AI agent high-risk offensive reverse-engineering capability and a prompt-to-code-execution workflow over untrusted binaries, making the overall security risk high despite low evidence of malware.

Confidence: 89%Severity: 74%
Audit Metadata
Analyzed At
May 14, 2026, 02:24 PM
Package URL
pkg:socket/skills-sh/HexRaysSA%2Fida-claude-code-plugins%2Fida-domain-scripting%2F@54d4a50f1562aec02b49bda60f4ff4138de91365