session-handoff

Fail

Audited by Socket on Jun 18, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
.DS_Store

This artifact strongly suggests dynamic code execution capability (plaintext “eval” within a packed/binary blob) and likely contains embedded code/data components (blob/script/reference-like markers). However, the fragment is not sufficient to confirm malicious intent or concrete behaviors such as exfiltration, credential theft, persistence, or network activity. Treat this dependency as suspicious and require extraction/decompilation and runtime verification to determine whether eval is used for legitimate templating/generation or for executing attacker-supplied payloads.

Confidence: 90%
Audit Metadata
Analyzed At
Jun 18, 2026, 05:32 AM
Package URL
pkg:socket/skills-sh/imMamdouhaboammar%2FVibe-Rules%2Fsession-handoff%2F@fc4ad844c3bdc08866a24fdf29e002826319c7415da3e9a17218a6f8f2adb172
Security Audit — socket — session-handoff