msgraph

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
references/samples-index.db

The fragment indicates a Microsoft 365/Graph automation component capable of extensive tenant reconnaissance (directory roles, Conditional Access/auth policies, Intune device compliance, SharePoint discovery, license/organization details, and application registrations with credential-related fields) plus two materially sensitive actions: reading unread mailbox metadata and sending email as the signed-in user. The artifact appears packed/corrupted, preventing confirmation of downstream data handling and safety controls. No explicit external exfiltration/persistence or OS-level malware behavior is visible in this snippet, but the combination of high-privilege data access and user-context email sending makes it potentially dangerous if distributed as a library and invoked without strict least-privilege and auditing safeguards.

Confidence: 45%Severity: 85%
Audit Metadata
Analyzed At
Jul 31, 2026, 10:54 AM
Package URL
pkg:socket/skills-sh/merill%2Fmsgraph-skill%2Fmsgraph%2F@dc2f312466f577aae17bb0eb9b86eab2055229d2b9896b8f64bef0f0864f1182
Security Audit — socket — msgraph