sherpa

Pass

Audited by Socket on Apr 30, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Apr 30, 2026, 10:17 AM
Package URL
pkg:socket/skills-sh/simota%2Fagent-skills%2Fsherpa%2F@01b4e50dd257c20b8164163cab197538c5de9923