pii-detect

Warn

Audited by Socket on Jun 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's stated purpose is coherent, but its footprint routes highly sensitive input to third-party claude-flow MCP tools with limited transparency about endpoint handling, and it grants unnecessary Bash access. No direct malware behavior, credential theft, or covert execution is shown, but external processing of PII makes this a medium-risk skill.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
Jun 13, 2026, 01:22 PM
Package URL
pkg:socket/skills-sh/ruvnet%2Fclaude-flow%2Fpii-detect%2F@8ab714d3990eaafe28f6a4ab8e7f75e5c9fbcc30b086f4d72464758dd421e00e
Security Audit — socket — pii-detect