fleet-health-report

Warn

Audited by Socket on Aug 12, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill's functional scope is coherent for fleet reporting and its documented data flow appears to target first-party NVIDIA services. However, the named `nvfleetint` executable is not publicly verifiable from the evidence provided, and the skill entrusts that CLI with stored authentication profiles for repeated API access. That makes this skill suspicious/high-risk from an install-trust and credential-forwarding standpoint, even without evidence of overt exfiltration or malicious intent.

Confidence: 79%Severity: 82%
Audit Metadata
Analyzed At
Aug 12, 2026, 05:55 PM
Package URL
pkg:socket/skills-sh/nvidia%2Ffleet-intelligence-client%2Ffleet-health-report%2F@2794c69239021d994e63ad83bf56ad2d6636015ee6947e4efa5f3e69469a2540
Security Audit — socket — fleet-health-report