qedgen-auditor

Warn

Audited by Socket on May 1, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is internally aligned with Solana security auditing, but it grants an agent meaningful offensive review capability, executes an external CLI with limited provenance shown here, and instructs silent file-writing without per-action consent. No clear credential theft or exfiltration is present, so this is not malware, but it carries moderate-to-high operational risk as an autonomous security tool.

Confidence: 83%Severity: 68%
Audit Metadata
Analyzed At
May 1, 2026, 11:03 AM
Package URL
pkg:socket/skills-sh/qedgen%2Fsolana-skills%2Fqedgen-auditor%2F@4feefc311bc7d93e2de580f2030cafb8f14ca3d1