counterparty-guard

Warn

Audited by Socket on Jun 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The stated purpose is coherent with the data sources and browser/API lookups, and the skill does not show overt malware behavior or credential harvesting. However, it is not fully self-contained: it relies on an unprovided local script and a separate cross-source-verify skill with unverifiable provenance, and it processes untrusted external content in a tool-enabled workflow. Overall this looks like a plausible business due-diligence skill with medium security risk from transitive trust and content-ingestion exposure, not confirmed malicious intent.

Confidence: 84%Severity: 56%
Audit Metadata
Analyzed At
Jun 18, 2026, 02:00 AM
Package URL
pkg:socket/skills-sh/ilyautov%2Fsmall-business-ru%2Fcounterparty-guard%2F@7033b950776ec7621981e9d5ba17fe4bc6d479b08e700623dea3fff18708ef43
Security Audit — socket — counterparty-guard