sprites

Warn

Audited by Socket on May 8, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The core purpose and official API endpoints are coherent for a Sprites management skill, but the embedded 'real' API key and detailed production environment metadata make the skill unsafe and over-scoped. The main issue is credential exposure and sensitive infrastructure disclosure, not malicious third-party routing.

Confidence: 94%Severity: 86%
Audit Metadata
Analyzed At
May 8, 2026, 08:03 AM
Package URL
pkg:socket/skills-sh/jarmen423%2Fskills%2Fsprites%2F@1a0efa717b38218ca7d2258e8eb085ba07c29f11