socket-inspect

Installation
SKILL.md

Research Inspect

Research a package before you depend on it. This skill pulls every available signal from Socket — scores, alerts, malware verdicts, CVEs, and supply-chain risk indicators — checks the socket.dev package page for additional context, evaluates alternatives when warranted, and surfaces available Socket patches. Use it to make an informed decision before adding, keeping, or replacing any dependency.

When to Use

  • Evaluate a package before installing it
  • Investigate a flagged dependency from a scan
  • Check the security, quality, or maintenance status of a package
  • Compare alternatives for a dependency choice
  • Check if a package is malware
  • Check if Socket has patches available for a vulnerable package
  • Get a comprehensive supply-chain risk report

Prerequisites

Socket CLI Setup

Installs
10
GitHub Stars
5
First Seen
Mar 25, 2026
socket-inspect — socketdev/skills