universal-email

Warn

Audited by Socket on Aug 23, 2026

2 alerts found:

Securityx2
SecurityMEDIUM
SKILL.md

The skill's purpose and mail-related capabilities are internally coherent, and its documented data flows appear aimed at official mail backends rather than a third-party interception service. The main issue is trust: it asks the agent to use a bundled executable that will handle mailbox credentials and content, but the skill does not provide a way to verify that bundled binary matches the legitimate upstream Himalaya source/revision. This makes the skill high risk from a supply-chain and credential-forwarding perspective, though not confirmed malware.

Confidence: 84%Severity: 83%
SecurityMEDIUM
scripts/bin/darwin-x64/cola-credential-helper

This module is a high-suspicion native component due to explicit macOS Keychain/keyring credential manipulation capabilities (read/find, write/add, modify, delete) combined with runtime inputs (env/argv) and diagnostic output. No clear network exfiltration indicators are visible in the provided excerpt, but local credential theft or tampering/persistence remains a significant concern. Full review requires examining the original source/control-flow and running it in a sandbox with Keychain/syscall tracing to confirm whether its credential access is intended and scoped.

Confidence: 45%Severity: 78%
Audit Metadata
Analyzed At
Aug 23, 2026, 07:46 AM
Package URL
pkg:socket/skills-sh/marswaveai%2Fskills%2Funiversal-email%2F@1a8d5c706023d9cab75e1dc779d9edd4f6d5077c12d30e80954e9a644b583400
Security Audit — socket — universal-email