blender-laser

Warn

Audited by Socket on Apr 30, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the Blender functionality matches the stated purpose, but execution relies on an undocumented localhost HTTP bridge that accepts arbitrary Python with no provenance or verification. Risk comes from local code-execution trust, not from credential theft or external data routing.

Confidence: 86%Severity: 64%
Audit Metadata
Analyzed At
Apr 30, 2026, 11:00 AM
Package URL
pkg:socket/skills-sh/ptrthomas%2Fblender-agent%2Fblender-laser%2F@9dc9ce8b8fc9f1ba9e484b96c2031e173deb3b9b
Security Audit — socket — blender-laser