agent-sandbox

Warn

Audited by Socket on Aug 25, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the capability set matches a sandbox-management skill, but the data path appears to run through a third-party Flow Nexus MCP layer that may receive code, files, and secrets intended for E2B sandboxes. This is proportionate to the purpose but increases trust and credential-forwarding risk because the skill does not clearly scope what secrets are sent or document direct official endpoint usage.

Confidence: 83%Severity: 58%
Audit Metadata
Analyzed At
Aug 25, 2026, 12:23 PM
Package URL
pkg:socket/skills-sh/majiayu000%2Fclaude-skill-registry%2Fagent-sandbox%2F@13d20b3a00d6bd447363ee721c236795e198dbd4f57ba99dbff6131619d8db8e
Security Audit — socket — agent-sandbox