pii-detect

Warn

Audited by Socket on May 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's stated purpose is coherent, but its footprint routes highly sensitive input to third-party claude-flow MCP tools with limited transparency about endpoint handling, and it grants unnecessary Bash access. No direct malware behavior, credential theft, or covert execution is shown, but external processing of PII makes this a medium-risk skill.

Confidence: 83%Severity: 58%
Audit Metadata
Analyzed At
May 18, 2026, 05:37 PM
Package URL
pkg:socket/skills-sh/ruvnet%2Fruflo%2Fpii-detect%2F@352735430d270f30fbdae6e3aa3aaf70195a5ddb
Security Audit — socket — pii-detect