sherpa

Pass

Audited by Socket on Sep 18, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Sep 18, 2026, 01:49 PM
Package URL
pkg:socket/skills-sh/simota%2Fagent-skills%2Fsherpa%2F@735bb6d280ecd6fd4e3d73e337629f8614ba4ce875c0762a369f0675d3b11d41
Security Audit — socket — sherpa