clone-website

Warn

Audited by Socket on Apr 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is broadly aligned with website cloning, and its named external tools are mostly official, but it gives an AI agent high-risk behavior: ingest arbitrary website content, write code/files from it, run builds, and autonomously dispatch sub-agents. The main security concern is indirect prompt injection and uncontrolled processing of untrusted web content with write/exec permissions, not credential theft or confirmed malware.

Confidence: 87%Severity: 72%
Audit Metadata
Analyzed At
Apr 18, 2026, 12:08 PM
Package URL
pkg:socket/skills-sh/kmshihab7878%2Fclaude-code-setup%2Fclone-website%2F@32ca39160e30af76a75151d5580e7721419dd7fa
Security Audit — socket — clone-website