c-review

Warn

Audited by Socket on May 4, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK VULNERABLE skill, not confirmed malware. Its behavior is internally consistent with a C/C++ security-review purpose and shows no credential theft or exfiltration, but it gives an AI agent substantial offensive security capability plus Bash/Write access over untrusted code inputs, creating meaningful misuse and prompt-injection risk.

Confidence: 90%Severity: 74%
Audit Metadata
Analyzed At
May 4, 2026, 12:21 AM
Package URL
pkg:socket/skills-sh/trailofbits%2Fskills%2Fc-review%2F@12995032503d6a7522f667a443fef3c648f03f93