cloudflare-security-audit-skill

Warn

Audited by Socket on Sep 16, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s purpose and capabilities align: it is an offensive security audit orchestrator, so code inspection, prior-findings review, and parallel adversarial analysis are proportionate. Main risk is transitive trust from installing a mutable GitHub-hosted skill via the third-party Skills CLI; however, the repo is publicly under Cloudflare’s org and there is no evidence of credential harvesting, secret-file exfiltration, hidden execution, or third-party proxying. High-impact security-audit functionality is intentional, but the provided content is internally coherent rather than malicious.

Confidence: 90%Severity: 55%
Audit Metadata
Analyzed At
Sep 16, 2026, 03:16 PM
Package URL
pkg:socket/skills-sh/reason-machines%2Fsecurity-skills%2Fcloudflare-security-audit-skill%2F@14fc829144f379a44933ae1f0c1fa43aab911aacf02fac10f447477249cd5bcb
Security Audit — socket — cloudflare-security-audit-skill