pii-detect

Warn

Audited by Socket on Jun 28, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's stated purpose is coherent, but its footprint routes highly sensitive input to third-party claude-flow MCP tools with limited transparency about endpoint handling, and it grants unnecessary Bash access. No direct malware behavior, credential theft, or covert execution is shown, but external processing of PII makes this a medium-risk skill.

Confidence: 83%Severity: 58%
Audit Metadata
Analyzed At
Jun 28, 2026, 03:01 PM
Package URL
pkg:socket/skills-sh/ruvnet%2Fclaude-flow%2Fpii-detect%2F@6780507751e8ee5871f83bfc1775c97495e022a35e041a8ef77a00b2d6b4cd6e
Security Audit — socket — pii-detect