dev-security-audit

Warn

Audited by Socket on Aug 24, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

BENIGN for stated purpose but high-impact. The skill is internally consistent with a workstation compromise audit and shows no suspicious installer or obvious credential exfiltration path, yet it grants an agent broad access to secrets, wallets, browser/app data, and persistence state. Treat as a legitimate but high-risk security triage skill that should only run with strong user intent and tight execution controls.

Confidence: 88%Severity: 71%
Audit Metadata
Analyzed At
Aug 24, 2026, 01:46 PM
Package URL
pkg:socket/skills-sh/sd0xdev%2Fsd0x-harness%2Fdev-security-audit%2F@bcc0e2e5eddd49af6e75fdbce2fb3a31bd07c9d65d087464986feec5a003f63c
Security Audit — socket — dev-security-audit