python-executor

Warn

Audited by Socket on May 13, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the core purpose of remote Python execution is coherent, but the install path is not well aligned with the publisher's official Belt distribution and relies on transitive skill installation. The skill also grants broad execution capability and encourages processing untrusted external content, making overall risk medium-high even without clear evidence of overt credential theft or malware.

Confidence: 88%Severity: 74%
Audit Metadata
Analyzed At
May 13, 2026, 01:13 PM
Package URL
pkg:socket/skills-sh/inference-sh%2Fskills%2Fpython-executor%2F@3dfb3df9f47f83acb80d706e591c3ea143ec78e0
Security Audit — socket — python-executor