masumi

Warn

Audited by Socket on May 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is largely coherent with its stated purpose and mostly uses same-org infrastructure, but it grants an AI agent high-impact autonomous payment capabilities and references one MCP install path not fully verified in the provided evidence. This looks more like a high-risk financial automation skill than malware.

Confidence: 88%Severity: 72%
Audit Metadata
Analyzed At
May 16, 2026, 02:33 AM
Package URL
pkg:socket/skills-sh/masumi-network%2Fmasumi-skills%2Fmasumi%2F@b0966428831d69cffebdede7f0bb53dd8b12f286