security-benchmark-runner

Warn

Audited by Socket on May 4, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is not overtly malicious and shows no credential theft or exfiltration, but it is unusually vague for a security-focused skill, grants broad local action tools, and is distributed through third-party install paths with limited integrity evidence. Risk is driven more by overbroad scope and install trust than by confirmed malicious behavior.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
May 4, 2026, 02:31 PM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins-plus-skills%2Fsecurity-benchmark-runner%2F@e4243e41841f0d51ea5d4b40b6e0c6dc659bdb90