python-sdk

Warn

Audited by Socket on May 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core Python SDK documentation is mostly coherent and uses an official pip package, but the skill also pushes unrelated/transitive skill installations and includes agent patterns that combine remote content ingestion with execution-capable tools. This is not confirmed malware, but it carries medium risk beyond a narrowly scoped SDK guide.

Confidence: 88%Severity: 61%
Audit Metadata
Analyzed At
May 13, 2026, 01:13 PM
Package URL
pkg:socket/skills-sh/inference-sh%2Fskills%2Fpython-sdk%2F@112fb1be81c1fdcafe21b77484bc7c9c784fe96b
Security Audit — socket — python-sdk