agentar

Warn

Audited by Socket on Jul 7, 2026

2 alerts found:

SecurityAnomaly
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s purpose is coherent, but its actual trust model is not: it installs an unverifiable CLI through a remote test-hosted shell script, then passes API credentials to that CLI. The same-org relationship for the parent domain is only partially supported and does not verify this specific test subdomain, installer, or package, so the supply-chain and credential-forwarding risks dominate.

Confidence: 89%Severity: 90%
AnomalyLOW
references/agentar-cli-quick-reference.md

No direct malicious behavior is evidenced in this documentation-only fragment. However, it instructs users to download and execute a remote installer script and to install a remote tarball, without showing checksum/signature verification or pinned provenance, which creates a significant supply-chain security exposure. To determine whether the package is actually malicious, the contents of the referenced install.sh and package.tgz must be reviewed (and ideally verified via trusted signatures/hashes).

Confidence: 55%Severity: 55%
Audit Metadata
Analyzed At
Jul 7, 2026, 03:35 PM
Package URL
pkg:socket/skills-sh/OpenAgentar%2Fagentar-skills%2Fagentar%2F@c4ee8624f5dcb9ae4bd3b890a4b5c23e213c9d87556a3c5877c0a30d3b10a1ad
Security Audit — socket — agentar