variant-analysis

Warn

Audited by Socket on Apr 13, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill is coherent and does not show credential theft, exfiltration, or suspicious install behavior, but it equips the agent with offensive security analysis capability for finding vulnerability variants across codebases. Risk comes primarily from the security-audit purpose, not from hidden data flows or supply-chain behavior.

Confidence: 90%Severity: 74%
Audit Metadata
Analyzed At
Apr 13, 2026, 11:17 AM
Package URL
pkg:socket/skills-sh/marclelamy%2FSKILLS%2Fvariant-analysis%2F@04515a9e721ccf879d75770251ad25001ac66973
Security Audit — socket — variant-analysis